The following versions currently receive security updates:
| Version | Supported |
|---|---|
| latest | ✅ |
| < 1.0 | ❌ |
Please do not report security vulnerabilities through public GitHub issues.
If you discover a security vulnerability, please disclose it responsibly by sending an email to:
Include as much of the following information as possible to help us understand and resolve the issue quickly:
- Type of issue (e.g. buffer overflow, SQL injection, authentication bypass, privilege escalation, etc.)
- Affected component (service name, module, endpoint)
- Full paths of source files related to the vulnerability
- Step-by-step instructions to reproduce the issue
- Proof-of-concept or exploit code (if available)
- Impact assessment — what an attacker could achieve by exploiting it
- Suggested fix (optional, but appreciated)