- List the versions that are actively maintained and receive security updates.
Example:
- 1.x – supported
- 0.x – unsupported
If you discover a security vulnerability, please follow these steps:
- Do not open a public issue.
- Contact the maintainers privately:
- Email: rammault.gauthier@gmail.com with the subject: Reporting a Vulnerability
- Include as much detail as possible:
- Steps to reproduce
- Impact of the vulnerability
- Environment details
- Acknowledge receipt within 48 hours.
- Assess and verify the issue.
- Provide a timeline for a fix.
- Release a patched version with a public advisory.
- Keep dependencies updated.
- Follow coding best practices.
- Avoid exposing sensitive information (API keys, passwords, secrets).
Thanks to all contributors who help identify and resolve security issues responsibly.