Skip to content

Latest commit

 

History

History
50 lines (32 loc) · 1.34 KB

File metadata and controls

50 lines (32 loc) · 1.34 KB

Security Policy

Supported Versions

Only the latest stable release of this project is actively supported with security updates.

Version Supported
Latest Release
Older Releases

Reporting a Vulnerability

The security of this project is taken seriously.

If you discover a security vulnerability, please do not create a public issue.

Instead, use GitHub's Private Vulnerability Reporting feature to report the issue privately.

When submitting a report, please include:

  • A description of the vulnerability
  • Steps to reproduce the issue
  • Potential impact
  • Proof of concept (if available)
  • Suggested mitigation or fix (optional)

Response Process

After receiving a report:

  1. The vulnerability will be reviewed and validated.
  2. A fix will be developed if necessary.
  3. A security release will be published when appropriate.
  4. Credit may be given to the reporter unless they request otherwise.

Scope

This policy applies to:

  • Source code
  • Package distributions
  • GitHub Actions workflows
  • Documentation examples that may impact security

Responsible Disclosure

Please allow a reasonable amount of time for vulnerabilities to be investigated and resolved before publicly disclosing details.

Thank you for helping improve the security of this project.