We actively support and provide security updates for the current major release branch of NoiPhi. If a vulnerability is found, it will be patched in the latest release.
| Version | Supported |
|---|---|
| v0.1.x | ✅ Yes |
| < v0.1.0 | ❌ No |
Because NoiPhi is used in academic and numerical simulation workflows, maintaining code integrity is important to us.
If you discover a security vulnerability (such as a dependency exploit or a malicious code injection vulnerability), please do not open a public GitHub Issue. Instead, please report it privately by contacting the maintainer directly via the contact methods listed on the GitHub profile.
Once a vulnerability is reported:
- We will acknowledge receipt of your report within 48 hours.
- We will work on a patch and coordinate a release date for the fix.
- You will receive full credit for the discovery in our release notes once the patch is live.