Skip to content

Latest commit

 

History

History
31 lines (22 loc) · 1.26 KB

File metadata and controls

31 lines (22 loc) · 1.26 KB

Security Policy

Supported version

MaterialGraph is an early-stage research prototype. Security fixes are applied to the current main branch; older commits and deployments are not supported.

Reporting a vulnerability

Do not disclose a suspected vulnerability in a public issue, discussion, pull request, or commit.

Use GitHub's private vulnerability-reporting flow for this repository when it is available. Include the affected component, reproduction steps, expected and observed behavior, impact, and any safe supporting evidence. Do not include production credentials, personal data, or destructive proof-of-concept data.

If private vulnerability reporting is unavailable, contact the repository owner privately before sharing technical details. The maintainer will acknowledge a complete report, assess scope and severity, coordinate a fix and verification, and agree on disclosure timing with the reporter.

Scope

Useful reports include credential exposure, authorization or isolation flaws, unsafe dependency behavior, injection, denial-of-service paths, insecure deployment defaults, and ways to bypass enforced repository or release controls.

Scientific correctness and feature requests belong in the normal issue process unless they create a security impact.