Skip to content

Security: Gaardsholt/pass-along

SECURITY.md

Security Policy

Supported Versions

Only the latest release of pass-along receives security updates.

Version Supported
Latest ✅
< Latest ❌

Reporting a Vulnerability

We take the security of pass-along seriously. If you believe you have found a security vulnerability, please report it responsibly.

Private Reporting

Do not report security vulnerabilities through public GitHub issues.

Please submit vulnerabilities privately via:

  1. GitHub Private Vulnerability Reporting: Use the Security tab of this repository and select Report a vulnerability, or go directly to https://github.com/Gaardsholt/pass-along/security/advisories/new.

Response Time and Process

  • Acknowledgment: We commit to acknowledging receipt of your report within 48 hours, and at most within 14 days.
  • Investigation: We will investigate the issue and provide an assessment and mitigation timeline.
  • Coordination: We will coordinate with you regarding the public release and credit you in the release notes unless you request anonymity.

There aren't any published security advisories