Only the latest release on the main branch is supported with security updates.
| Version | Supported |
|---|---|
| Latest | β |
Do NOT open a public issue.
To report a security vulnerability, please use GitHub's private vulnerability reporting:
- Acknowledgment β We will acknowledge receipt of your report within 48 hours.
- Initial assessment β We will provide an initial assessment within 7 days.
- Collaboration β We will work with you to understand and reproduce the issue.
- Disclosure timing β We will coordinate disclosure timing with you.
- Credit β You will be credited in the security advisory unless you prefer to remain anonymous.
We ask that you:
- Give us reasonable time to address the vulnerability before disclosing publicly.
- Act in good faith to avoid privacy violations, data destruction, or service disruption.
- Do not access or modify data belonging to other users.
Thank you for helping keep OnRamp and its users safe.