We actively support the following versions with security updates:
| Version | Supported |
|---|---|
| 1.0.x | ✅ |
| < 1.0 | ❌ |
If you discover a security vulnerability in this project, please report it to us as follows:
- Do not create a public issue on GitHub
- Email your findings to [INSERT SECURITY EMAIL] (e.g., security@yourdomain.com)
- Include detailed information about the vulnerability, including:
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix (if any)
- We will acknowledge receipt of your report within 48 hours
- We will provide a more detailed response within 7 days indicating our next steps
- We will keep you informed about our progress throughout the process
- We will credit you (if desired) once the vulnerability is fixed
- We follow a coordinated disclosure process
- We will not disclose details of the vulnerability until a fix is available
- We will work with you to ensure the disclosure is handled responsibly
We consider security research conducted in accordance with this policy to be authorized, and we will not initiate legal action against researchers who follow these guidelines.