Use this section to tell people about which versions of your project are currently being supported with security updates.
| Version | Supported |
|---|---|
| 0.1.x | ✅ |
We take security issues seriously. We appreciate your efforts to responsibly disclose your findings.
Please DO NOT report security vulnerabilities via public GitHub Issues.
Instead, please use the "Report a vulnerability" button available at the top of the Security tab of this repository.
- Acknowledgment: You will receive an acknowledgment of your report within 48 hours.
- Updates: We will keep you updated on the status of the fix every 5-7 days as we validate and address the issue.
- Disclosure: If the vulnerability is accepted, we will work on a patch and publish a Security Advisory (CVE) with proper credit to you (if you wish).
- Declined: If we determine that the reported issue is not a security risk (e.g., relies on user interaction or out-of-scope configuration), we will explain our reasoning and close the report without a CVE.
We kindly ask that you refrain from disclosing the details of the vulnerability publicly until we have released a fix.