Skip to content

Security: truecalc/core

Security

SECURITY.md

Security Policy

Reporting a vulnerability

Please do not report security vulnerabilities through public GitHub issues.

Instead, use GitHub's private vulnerability reporting for this repository:

  1. Go to the Security tab.
  2. Click Report a vulnerability.
  3. Fill in as much detail as you can — affected version, a minimal reproduction (e.g. the formula and input that triggers the issue), and the potential impact.

This creates a private advisory visible only to the maintainers and you, so the issue can be discussed and fixed before any public disclosure.

Supported versions

Only the latest published release of each package (truecalc-core, truecalc-mcp, @truecalc/core) is supported. Please upgrade to the latest version before reporting an issue, if possible.

There aren't any published security advisories