Skip to content

Security: fducat18/strata

Security

SECURITY.md

Security Policy

Supported versions

Security fixes are applied to the latest state of the default branch.

Reporting a vulnerability

Please report vulnerabilities privately.

Preferred channel:

  • GitHub Security Advisory (private vulnerability report)

If GitHub Security Advisories are unavailable, contact the maintainers through the repository owner contact listed on GitHub.

When reporting, include:

  • Affected component(s)
  • Reproduction steps / proof of concept
  • Impact assessment
  • Suggested remediation (if known)

Response expectations

The maintainers aim to:

  1. Acknowledge receipt promptly
  2. Reproduce and assess impact
  3. Provide status updates during triage
  4. Release a fix and coordinated disclosure when ready

Disclosure policy

Please avoid public disclosure until a fix is available and users have had reasonable time to upgrade.

There aren't any published security advisories