Skip to content

Latest commit

 

History

History
40 lines (27 loc) · 1.54 KB

File metadata and controls

40 lines (27 loc) · 1.54 KB

Security Policy

Supported Versions

We currently provide security updates for the following versions of our project:

Version Supported
2.x.x
1.5.x
< 1.5

Reporting a Vulnerability

We take the security of our project seriously. If you discover a security vulnerability, please follow these steps:

  1. Do not disclose the vulnerability publicly.
  2. Send a detailed report to our security team at [email protected].
  3. Include the following in your report:
    • A description of the vulnerability
    • Steps to reproduce the issue
    • Potential impact of the vulnerability
    • Any possible mitigations or workarounds

Our security team will acknowledge your email within 48 hours and will send a more detailed response within 5 business days, indicating the next steps in handling your report.

After the initial reply to your report, our security team will keep you informed about the progress towards a fix and full announcement. We may ask for additional information or guidance during this process.

Disclosure Policy

When we receive a security bug report, we will:

  1. Confirm the problem and determine affected versions.
  2. Audit code to find any similar problems.
  3. Prepare fixes for all supported versions.
  4. Release patched versions as soon as possible.

Comments on this Policy

If you have any suggestions to improve this security policy, please send an email to [email protected] with your ideas.