Skip to content

Security: containers/oci-delta

Security

SECURITY.md

Security and Disclosure Information Policy for the oci-delta Project

Reporting a Vulnerability

If you have identified a security vulnerability in the oci-delta project, please do not report the issue publicly via GitHub issues, mailing lists, etc. Instead, use GitHub's private security vulnerability reporting feature by pressing the "Report a vulnerability" button on the repository's security page or privately contact one or more of the maintainers.

Security Announcements

All security vulnerabilities will be disclosed in the next release after they are fixed.

Security Vulnerability Response

Each report is acknowledged and analyzed as soon as is practicable given that oci-delta is maintained by a few volunteers.

As the security report moves toward an identified fix and release, the maintainers will keep the reporter updated.

There aren't any published security advisories