Security fixes currently target the latest code on the default branch. A separate support policy for released versions has not yet been established.
Do not disclose suspected vulnerabilities in public issues, discussions, pull requests, logs, or screenshots.
Use GitHub's private vulnerability reporting flow:
- Open the repository's Security tab.
- Select Advisories and then Report a vulnerability.
- Submit a private security advisory with the affected component, impact, reproduction steps, and any proposed mitigation.
Direct link: https://github.com/Nether403/SpriteGameGen/security/advisories/new
Remove credentials, personal data, and unrelated generated assets from the report. If test credentials are essential to reproduce the issue, do not attach them; explain what access is required so maintainers can reproduce it safely.
Maintainers will acknowledge the report through the private advisory, assess severity and scope, coordinate a fix, and discuss disclosure timing with the reporter. Please allow a reasonable response period before public disclosure.
If private vulnerability reporting is unavailable, use GitHub's Security tab to review the repository's available private contact options. Do not fall back to a public issue containing vulnerability details.