| Version | Supported |
|---|---|
| 1.x | ✅ |
Please do not report security vulnerabilities through public GitHub issues.
To report a vulnerability, open a GitHub Security Advisory in this repository. This keeps the disclosure private until a fix is available.
Include as much of the following as possible:
- Type of issue (e.g. dependency confusion, code injection, path traversal)
- Steps to reproduce
- Affected versions
- Any suggested remediation
You can expect an acknowledgement within 7 days and a resolution timeline within 90 days depending on severity.
Reports in English or Swedish are both welcome.