Skip to content

Security: Syvel-io/.github

Security

SECURITY.md

Security Policy

Supported versions

Version Supported
Latest stable Yes
Previous minor Bug fixes only
Older No

Reporting a vulnerability

Please do not open a public GitHub issue for security vulnerabilities.

Send a report to privacy@syvel.io with:

  • A description of the vulnerability and its potential impact
  • Steps to reproduce or a proof of concept
  • Affected package(s) and version(s)

We will acknowledge your report within 48 hours and aim to release a fix within 14 days for critical issues.

We ask that you give us reasonable time to address the issue before any public disclosure.

Scope

This policy covers:

Out of scope

  • Rate limiting or quota bypass on free-tier accounts
  • Issues in third-party dependencies (please report upstream)
  • Social engineering attacks

There aren’t any published security advisories