Only the latest minor release line is supported with security fixes.
Please do not open public issues for suspected vulnerabilities.
- Open a private security advisory in GitHub, or
- Contact the maintainer listed in
pyproject.toml.
Include:
- affected version
- impact assessment
- reproduction steps or proof of concept
- suggested fix if available
- Initial triage: within 7 days
- Status update cadence: at least weekly until resolution