PrefixPug actively supports the latest release milestone. We strongly recommend always running the latest version.
| Version | Supported |
|---|---|
| 0.2.x | ✅ |
| < 0.2.0 | ❌ |
The safety of user data is the primary design requirement of PrefixPug. If you discover a security vulnerability, an unintended file deletion flaw, or a path traversal issue, please report it responsibly.
- Preferred: Submit a confidential advisory report through GitHub Security Advisories.
- Alternative: Send an email directly to bryanvaughan07@gmail.com with the subject
[PrefixPug Security] Vulnerability Report.
Please include the following details:
- Description of the vulnerability and attack vector / data loss scenario.
- Steps to reproduce or a minimal proof-of-concept test script.
- System environment (OS, filesystem, Steam version, directory layout).
- Potential impact.
- We will acknowledge receipt of your vulnerability report within 48 hours.
- We will provide a timeline for triage, validation, and patch release.
- A public security advisory and credit will be coordinated upon releasing the fix.