Security Policy

Information regarding responsible vulnerability disclosure, supported versions, and security reporting procedures for this project.

Supported Versions

This project is maintained on a rolling basis.

Security fixes and improvements may only be applied to the latest available version.

Reporting a Vulnerability

If you discover a security vulnerability affecting this project, please report it responsibly.

A report should include:

Please do not publicly disclose vulnerabilities until they have been reviewed and assessed.

Scope

This policy applies to:

Examples of relevant issues include:

Out of Scope

The following generally fall outside the scope of this policy:

Third-Party Services

This website may utilize third-party APIs, embedded content, hosting infrastructure, comment platforms, analytics services, and external resources.

Security issues originating from third-party providers should be reported directly to the maintainers of those services.

Response Process

Vulnerability reports will be reviewed as time and availability permit.

If a report is confirmed, reasonable efforts may be made to investigate, mitigate, or resolve the issue.

Response times, acknowledgements, and fixes are not guaranteed.

Safe Harbor

Security researchers acting in good faith to identify and report vulnerabilities will not be considered to be engaging in unauthorized activity provided that:

Disclaimer

This project is provided "AS IS" without warranty of any kind.

While reasonable efforts may be made to maintain security and integrity, no guarantees are provided regarding:

Policy Updates

This Security Policy may be modified, updated, or replaced at any time without prior notice.

Continued use of the project following publication of changes constitutes acceptance of the updated policy.