Security fixes are applied to the default branch (main) and tagged releases when applicable.
| Branch / release | Supported |
|---|---|
main |
Yes |
| Older tags | Best effort |
Please do not open a public issue for undisclosed security problems.
Preferred: use GitHub private vulnerability reporting for this repository (if available on the repo Security tab).
Include:
- A short description of the issue and its impact
- Steps to reproduce or proof of concept, if you can share them safely
- Affected versions, components, or files (if known)
We aim to acknowledge reports within a few business days and coordinate disclosure after a fix is ready.
This policy covers this repository and its documented usage (skills, examples, and published tooling). Third-party services (for example Polymarket APIs or infrastructure you deploy yourself) are governed by their own policies.