Security Policy
Supported Versions
Alien::Xmake follows semver. Only the most recent release line is actively patched for security vulnerabilities.
| Version | Supported | | ---------------- | ------------------ | | latest (0.9.x) | :white_check_mark: | | < 0.9.0 | :x: |
Reporting a Vulnerability
We take security issues seriously. Please report them privately rather than opening a public issue.
To report a vulnerability, open a private advisory via the repository's Security Advisories page.
Please include as much of the following as possible:
- The affected module(s) and version(s)
- A description of the vulnerability and its impact
- Steps to reproduce, or a minimal proof-of-concept
- Any suggested fix, if you have one
What to expect
- You will receive an acknowledgement within 3 business days.
- We will assess the report and coordinate a fix and a coordinated release.
- We may ask that you do not disclose the details publicly until we have shipped a fix and you have had a chance to verify it.
Thank you for helping keep Alien::Xmake and its users safe.