This repository contains authorized lab security assessment tooling only. It must not be used against systems without explicit permission.
If you discover a security issue in the hexstrike_lab code itself (not third-party tools), please report it responsibly:
- Open a private security advisory on GitHub (if the repository supports it), or
- Contact the maintainers through your organization’s usual channel (e.g. ACTC / project owner).
Do not file public issues that disclose exploitable details before a fix is available.
Reports should relate to this codebase (Python modules, scripts, CI). Issues in upstream tools (nmap, nikto, etc.) should be reported to their respective projects.