We actively provide security patches and updates for the following versions:
| Version | Supported |
|---|---|
| 1.1.x | ✅ |
| 1.0.x | ✅ |
| < 1.0 | ❌ |
We take the security of TidyFactor Styler and its associated workflows seriously. Please do not report security vulnerabilities via public GitHub issues or discussions.
-
Private Reporting:
- Open a private security report through GitHub Security Advisories.
- Alternatively, email
security@tidyfactor.comorhello@tidyfactor.com.
-
Details to Include:
- Description of the vulnerability and attack vector.
- Exact steps or script to reproduce the issue.
- Potential impact on users or downstream implementations.
-
Response SLA:
- Acknowledgement within 48 hours.
- Coordinated disclosure and patch release in accordance with standard SemVer rules.