We take the security of this project seriously. If you believe you have found a security vulnerability, please report it to us as soon as possible.
Please do not report security vulnerabilities through public GitHub issues.
Instead, please report them by opening a GitHub issue with the security label, or by contacting the maintainer directly if an email is provided in their profile.
- Acknowledgment: We will acknowledge receipt of your report within 48 hours.
- Investigation: We will investigate the issue and determine if it is a vulnerability.
- Fix and Disclosure: If confirmed, we will work on a fix and coordinate a public disclosure once the fix is ready and tested.
Only the latest version of the toolkit is supported with security updates.
| Version | Supported |
|---|---|
| 1.0.x | ✅ |
| < 1.0.0 | ❌ |
- Provide us with a reasonable amount of time to resolve the issue before any public disclosure.
- Avoid violating privacy, destroying data, or interrupting our services.
- Do not exploit a security issue you discovered for any reason.