Skip to content

Security: Mesteriis/iris

Security

SECURITY.md

Security Policy

Supported Versions

IRIS currently supports security fixes on the active development line only.

Version Supported
main yes
older snapshots and branches no

Reporting A Vulnerability

Please do not open a public issue for a suspected security vulnerability.

Preferred reporting path:

  1. Use GitHub Private Vulnerability Reporting or a private security advisory if it is enabled for the repository.
  2. If private reporting is not available, contact the repository maintainer through GitHub private channels.

Please include:

  • affected area
  • reproduction steps
  • impact assessment
  • any suggested mitigation

Response Policy

The project follows a best-effort response model. Triage, mitigation, and disclosure timing depend on severity and maintainer availability.

There aren't any published security advisories