Skip to content

Security: Interchouette-ITC/rangular

Security

docs/SECURITY.md

Security policy

Supported versions

Security fixes target the latest tip of the dev branch and any tagged releases published from this repository.

Reporting a vulnerability

Do not open a public GitHub issue for an unfixed vulnerability.

Prefer a private GitHub Security Advisory on this repository when available. Otherwise email contact@interchouette.net with a clear description, impact, and reproduction steps when possible.

We will acknowledge receipt and follow up. Do not expect a fixed SLA.

Dependency and CI gates

Local and CI dependency checks are documented in SUPPLY-CHAIN.md. That document is not a vulnerability reporting channel.

There aren't any published security advisories