docs: SECURITY.md v0.53.7 per-version fix note

Audit follow-up — v0.53.7 was added to the supported-version list but
the per-version security fix paragraph was missing. Add the dense
hardening summary matching the v0.53.6 / v0.53.5 style: bash 501 revert
rationale, atomic checkpoint write, _node_seed lstat-on-raw-path,
failed_reason redaction, Bearer auth gate on tool endpoints, SSE header
injection defence, vLLM /v1/messages loopback CORS, atomic Arrow save,
cache-hash gate on pre_tokenized short-circuit, prompt_strategy
trusted-input limitation. Docs-only — no version bump.

Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
This commit is contained in:
Alpamys 2026-05-13 20:11:18 +05:00
parent a26511f868
commit 0ddefc5c6f
1 changed files with 1 additions and 0 deletions

File diff suppressed because one or more lines are too long