Skip to content

Latest commit

 

History

History
49 lines (33 loc) · 1.32 KB

SECURITY.md

File metadata and controls

49 lines (33 loc) · 1.32 KB

Security Policy

Supported Versions

Only the latest minor version is officially supported with security updates. Given this is a teaching and demonstration project, we encourage all users to stay on the latest version.

Version Supported
0.2.x
< 0.2.0

Reporting a Vulnerability

We take security issues seriously, even for educational projects. Here's how to report security vulnerabilities:

Where to Report

  • Critical/High Severity: Email [email protected]
  • Low Severity: Open a GitHub issue with the "security" label

What to Include

  1. Affected versions
  2. Steps to reproduce
  3. Impact assessment
  4. Possible mitigations (if any)
  5. Whether you'd like to be credited for the discovery

Response Timeline

  • Initial Response: Within 48 hours
  • Status Update: Within 7 days
  • Fix Timeline: Depends on severity
    • Critical: Within 7 days
    • High: Within 14 days
    • Low: Next release cycle

Security Best Practices

When using this package, consider:

  1. Don't store sensitive data in sets
  2. Be aware of memory usage with large sets
  3. Consider implications of set operations in concurrent contexts

Contact

Security-related questions can be directed to: