Only the most recent release receives security fixes.
| Version | Supported |
|---|---|
| latest | ✅ |
| older | ❌ |
Do not open a public GitHub issue for security vulnerabilities.
Report vulnerabilities through GitHub Security Advisories. This keeps the report private until a fix is ready.
Please include:
- A clear description of the vulnerability
- Steps to reproduce
- The potential impact
- Any suggested fix, if you have one
You can expect:
- An acknowledgment within 72 hours
- A resolution timeline communicated within 7 days for confirmed issues
We do not currently operate a bug bounty program.