| Version | Supported |
|---|---|
| 3.1.x | ✅ |
| < 3.1.0 | ❌ |
DO NOT create public GitHub issues for security vulnerabilities.
Please report security vulnerabilities to: security@example.com
Include:
- Description of vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix (if available)
We will respond within 48 hours acknowledging receipt.
Expected timeline:
- Initial response: 48 hours
- Vulnerability confirmation: 1 week
- Fix development: 2-4 weeks
- Public disclosure: After fix released
- Security team reviews report
- Vulnerability confirmed/declined
- Fix developed in private fork
- Security advisory created
- Fix released with CVE assignment
- Public disclosure