Skip to content

Security: hetalang/heta-compiler

SECURITY.md

Security Policy

Supported Versions

The table below outlines which versions of the project are actively supported with security updates.

Version Supported
0.9.x
0.8.x
< 0.8.0

We recommend upgrading to the latest version to ensure you receive critical security updates.

Reporting a Vulnerability

We take security issues seriously and appreciate your efforts to disclose vulnerabilities responsibly. If you find a security issue in our project, please follow the steps below:

  1. Contact: Email us at [[email protected]] to report the issue. Please include:

    • A description of the vulnerability.
    • Steps to reproduce the issue, if applicable.
    • Any relevant details about potential impacts.
  2. Acknowledgment: You will receive an acknowledgment email within 48 hours, confirming receipt of your report.

  3. Investigation: We will investigate the issue and provide an update within 7 days. During this period, please refrain from publicly disclosing the vulnerability.

  4. Resolution: If the issue is confirmed, we will:

    • Develop and test a fix.
    • Provide a timeline for the release of the fix.
    • Credit you (if desired) for reporting the vulnerability.
  5. Follow-Up: If your report is not accepted as a valid vulnerability, we will provide an explanation.

Thank you for helping us maintain the security of this project!

There aren’t any published security advisories