Skip to content

Security: M0dEx/quincy

SECURITY.md

Security Policy

Supported Versions

Only the latest minor version of Quincy is supported.

If the latest version is 0.13.3, then a reported vulnerability will only get patched for 0.13.X versions. Any other versions affected by the vulnerability will get yanked on crates.io and marked as yanked on their respective GitHub release pages.

Reporting a Vulnerability

If you find a vulnerability in Quincy, please report it to the contacts below.

The expected response time is up to 24 hours, at which point you will get updated on the status of the reported vulnerability, including a link to a GitHub Security Advisory if the vulnerability is confirmed.

Email

Address: [email protected]

PGP public key
-----BEGIN PGP PUBLIC KEY BLOCK-----
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=VeP/
-----END PGP PUBLIC KEY BLOCK-----

Matrix

Username: @m0dex:matrix.m0dex.eu

Learn more about advisories related to M0dEx/quincy in the GitHub Advisory Database