Skip to content

Security: MathiasPaulenko/behave-kit

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in behave-kit, please report it responsibly.

Do NOT open a public GitHub issue.

Instead, email: mathias@paulenko.dev

Include:

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)

You will receive a response within 48 hours. If the vulnerability is confirmed, a fix will be released as soon as possible and you will be credited (unless you prefer to remain anonymous).

Supported Versions

Security updates are provided for the latest minor release series:

Version Supported
0.1.x ✅ Yes
< 0.1 ❌ No

Always upgrade to the latest patch release for the most recent fixes.

Disclosure Timeline

  • Acknowledgement within 48 hours of receiving a report.
  • Initial assessment within 7 days.
  • Patch release as soon as a fix is ready, typically co-ordinated with the reporter before public disclosure.

There aren't any published security advisories