| Version | Supported |
|---|---|
| latest | ✅ |
If you discover a security vulnerability in Hical, please do NOT open a public issue.
Instead, please report it privately via one of the following methods:
- GitHub Private Vulnerability Reporting: Go to the Security Advisories page and create a new advisory.
- Email: Send details to the repository owner via GitHub profile contact.
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix (if any)
- Acknowledgment: Within 48 hours
- Initial Assessment: Within 7 days
- Fix Release: Depends on severity, typically within 30 days
- We follow coordinated disclosure: please allow us reasonable time to fix the issue before public disclosure.
- Credit will be given to reporters in the release notes (unless anonymity is requested).
Thank you for helping keep Hical secure!