Skip to content

Latest commit

 

History

History
37 lines (24 loc) · 860 Bytes

File metadata and controls

37 lines (24 loc) · 860 Bytes

Security Policy

Supported Versions

Version Supported
0.x Yes
< 0.0 No

Pre-1.0 projects: only the latest minor is supported.

Reporting a Vulnerability

Do not open a public GitHub issue for security vulnerabilities.

Report privately via one of:

  1. GitHub Security Advisories (preferred)
  2. Email hello@urmzd.com

Include:

  • Description of the vulnerability
  • Steps to reproduce
  • Affected versions
  • Potential impact

Response timeline

  • Acknowledgment within 48 hours
  • Initial assessment within 1 week
  • Fix target within 90 days of confirmation

Recognition

Contributors who responsibly disclose vulnerabilities will be credited in the release notes unless they prefer to remain anonymous.