Skip to content

Security: Taz33m/tracebook

Security

SECURITY.md

Security Policy

tracebook is an alpha simulation library. It does not provide exchange connectivity, custody, account management, or trading advice.

Supported Versions

Security fixes target the latest commit on main until formal releases begin.

Reporting A Vulnerability

Please do not open a public issue for a suspected vulnerability. Use GitHub private vulnerability reporting if it is enabled for the repository, or contact the maintainer directly through the GitHub profile for Taz33m.

Useful reports include:

  • affected version or commit SHA
  • a minimal reproduction
  • impact and any realistic exploit path
  • whether the issue requires optional extras such as dashboard or analysis

We will acknowledge credible reports as quickly as possible and document any fix in CHANGELOG.md.

There aren't any published security advisories