| Version | Supported |
|---|---|
| 0.x.x | ✅ |
| 4.x.x | ✅ |
We take the security of TeaQL seriously. If you discover a security vulnerability, please report it via private email or GitHub Security Advisories.
Please do NOT create a public GitHub issue for security vulnerabilities.
- Email the project maintainers directly or use the GitHub "Report a vulnerability" feature under the Security tab.
- Provide a detailed description of the vulnerability, including steps to reproduce it.
- Provide details about your environment (e.g., OS, TeaQL version).
We aim to respond to security reports within 48 hours. We will keep you informed of our progress towards a fix and coordinate a public announcement. Once a patch is developed, we will follow responsible disclosure practices before publicly disclosing the vulnerability.
We greatly appreciate the efforts of security researchers and users who report vulnerabilities. Whenever a vulnerability is responsibly disclosed and fixed, we will publicly acknowledge and credit the reporter in our release notes and security advisories, unless they prefer to remain anonymous.