Skip to content

Latest commit

 

History

History
30 lines (19 loc) · 887 Bytes

File metadata and controls

30 lines (19 loc) · 887 Bytes

Security Policy

Supported Versions

Version Supported
latest Yes

Reporting a Vulnerability

Please do not report security vulnerabilities through public GitHub Issues.

Instead, report them via GitHub Security Advisories. This allows us to assess and fix the issue before public disclosure.

When reporting, please include:

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)

We aim to respond within 48 hours and will work with you to understand and resolve the issue promptly.

Disclosure Policy

We follow coordinated disclosure. Once a fix is released, we will:

  1. Publish a security advisory on GitHub
  2. Credit the reporter (unless anonymity is requested)
  3. Release a patched version to npm