Skip to content

Security: rsturla/warden

SECURITY.md

Security Policy

Supported Versions

Version Supported
Latest release Yes
main branch Yes
Older releases No

Reporting a Vulnerability

If you discover a security vulnerability in Warden, please report it through GitHub's private vulnerability reporting.

Do not open a public issue for security vulnerabilities.

What to include

  • Description of the vulnerability
  • Steps to reproduce
  • Affected versions
  • Impact assessment (if known)

What to expect

  • Acknowledgment within 3 business days
  • Assessment within 10 business days
  • Fix timeline communicated after assessment, based on severity

Disclosure

We follow coordinated disclosure. Security fixes are released before public disclosure. CVE identifiers are requested for confirmed vulnerabilities.

There aren't any published security advisories