Security fixes are applied to the latest release on main.
| Version | Supported |
|---|---|
| Latest release | Yes |
| Older releases | No |
Please do not report security vulnerabilities in public GitHub issues.
Use the following channel instead:
- Open a private vulnerability report through GitHub Security Advisories for this repository, if that option is available to you, including:
- a description of the issue
- affected files or flows
- reproduction steps or proof of concept
- any suggested mitigation
The maintainer will review the report and respond as quickly as possible. When a report is confirmed, fixes will be developed on the latest supported version and coordinated for disclosure.