| Version | Supported |
|---|---|
| 0.2.x | Yes |
| < 0.2.0 | No |
Do not report security vulnerabilities through public GitHub issues.
Use GitHub's private vulnerability reporting flow for this repository when it is available:
- Open the repository on GitHub.
- Go to the
Securitytab. - Open
Report a vulnerability. - Provide reproduction details, impact, and any suggested remediation.
If private vulnerability reporting is not enabled yet, contact the maintainers privately through GitHub before disclosing any details publicly.
Please include:
- affected package and version
- reproduction steps or a proof of concept
- impact assessment
- any known mitigations or patches
The maintainers will acknowledge the report, investigate, and coordinate a fix and disclosure timeline.