Currently supported versions with security updates:
none
We take the security of our project seriously. If you believe you've found a security vulnerability, please follow these steps:
- Do not disclose the vulnerability publicly
- Email the project maintainers with details about the vulnerability
- Include the following information:
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Any suggested fixes (if available)
- We'll acknowledge receipt of your vulnerability report within 48 hours
- We'll provide a more detailed response within 7 days indicating next steps
- We'll keep you informed about our progress towards a fix and announcement
- We'll credit you for the discovery when the vulnerability is announced (unless you prefer to remain anonymous)
- Ensure dependencies are kept up-to-date
- Follow secure coding practices
- Run security linting tools regularly
- Review code for potential security issues before submitting PRs
Thank you for helping keep our project and its users safe!