Please do not report security vulnerabilities through public GitHub issues, pull requests, or discussions.
Instead, report them privately by one of:
- Opening a GitHub Security Advisory (preferred — keeps the report private and tracked)
- Emailing the maintainer at
oral.ersoy.dokumaci@gmail.com
Please include enough detail to reproduce the issue. You can expect an acknowledgement within 72 hours. If the report is confirmed, we aim to release a patch release within two weeks, coordinated with a public disclosure through a GitHub Security Advisory.
Security fixes are backported to the most recent minor release only.
| Version | Supported |
|---|---|
| 1.7.x | Yes |
| < 1.7 | No |