| Version | Supported |
|---|---|
| latest | ✅ |
| older | ❌ |
Do not open a public GitHub issue for security vulnerabilities.
Please report security issues by emailing: security@example.com (replace with the actual contact address for your project)
Include in your report:
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix if you have one
You will receive an acknowledgement within 48 hours and a resolution timeline within 5 business days.
This project scans dependencies automatically:
pip-auditruns on every CI build and blocks on known CVEs- Dependabot opens PRs weekly for outdated dependencies
If you discover a vulnerability in a dependency before Dependabot does, please report it upstream to the dependency maintainer and notify us at the address above.