The following table indicates which versions of GuiarStr are currently supported with security updates and patches:
| Version | Supported | Notes |
|---|---|---|
| 1.3.x | β Yes (latest stable) | Current maintained release |
| 1.2.x | Critical fixes only | |
| < 1.2.0 | β No support | Please upgrade to a newer version |
If you discover a security vulnerability within GuiarStr, please follow these steps:
-
Do not open a public issue.
-
Privately report the vulnerability by emailing:
π§ techokba@gmail.com
(Subject:[SECURITY] GuiarStr Vulnerability Report) -
You can also contact the maintainer directly through:
- LinkedIn: guiar-oqba
- Telegram: @okba_elkantara
-
You will receive an initial response within 48 hours, and a full update within 5β7 business days as the issue is validated and triaged.
Once a report is received:
- The issue will be reviewed and validated.
- A fix will be developed and tested privately.
- A new secure release will be published.
- A public advisory will be issued on GitHubβs Security Advisories page.
If needed, coordinated disclosure will be arranged via CVE publication.
To maintain secure deployments of GuiarStr:
- Always use the latest stable version (β₯ 1.3.x).
- Avoid linking against unverified forks.
- Build with safe compiler flags:
-fstack-protector-strong -D_FORTIFY_SOURCE=2 -O2 -Wall - Prefer UTF-8 safe functions from GuiarStr instead of raw C string functions like
strcpy,strcat, etc.
GUIAR OQBA
π§ techokba@gmail.com
π GitHub: okba14
ORCID: 0009-0008-1629-0002