Skip to content

Security: alexandroit/client-errors

SECURITY.md

Security Policy

Supported versions

Security fixes are released for the latest maintained version of @stackline/client-errors. Upgrade to the latest patch release before reporting an issue that may already be resolved.

Reporting a vulnerability

Report suspected vulnerabilities privately through GitHub Security Advisories. Do not publish exploit details in a GitHub issue.

Include the affected version and runtime, a minimal synthetic reproduction, realistic impact, and any known mitigation. Remove credentials, personal data, and proprietary application code.

We aim to acknowledge reports within three business days, provide an initial assessment within seven business days, and send an update at least every fourteen days while confirmed remediation is active. Coordinated disclosure is preferred.

There aren't any published security advisories