This policy covers every QuickCasa open source repository that doesn't have its
own SECURITY.md.
Please don't report it in a public issue, pull request or discussion. Report it privately through GitHub:
- Open the Security tab of the repository the problem is in.
- Choose Report a vulnerability.
Tell us what an attacker could do, how to reproduce it and which version you tested. We'll confirm we got your report, keep you updated while we fix it, and credit you in the release notes unless you'd rather stay anonymous.
If the problem is in the QuickCasa product rather than in one of these repositories, email support@quickcasa.ai and say it's a security report. We'll move the conversation somewhere private.
We fix security issues in the latest release of each project's current major version.