Skip to content

Security: jamessawle/sbxflow

SECURITY.md

Security policy

Supported versions

sbxflow is currently pre-1.0. Security fixes are provided for the latest released minor line. Older minor lines may not receive fixes; upgrade to the latest release before reporting a problem that may already have been resolved.

Reporting a vulnerability

Please report suspected vulnerabilities through GitHub private vulnerability reporting. This keeps reports and any supporting material private while a fix is assessed.

Do not open a public issue, pull request, or discussion for an undisclosed vulnerability. Include the affected version, impact, reproduction steps, and any suggested mitigation when possible. The maintainer will acknowledge a report within 14 days. This volunteer-maintained project does not promise a fixed remediation time beyond that initial acknowledgment.

After a fix is available, the project may publish an advisory and credit the reporter unless anonymity is requested.

There aren't any published security advisories