| Version | Supported |
|---|---|
| 0.1.x | Yes |
If you discover a security issue, please report it responsibly:
- Do not open a public GitHub issue for security vulnerabilities.
- Email the maintainers or use GitHub private security advisories if enabled.
- Include steps to reproduce, impact assessment, and any suggested fix.
We will acknowledge receipt and work on a fix before public disclosure when possible.
- Do not commit secrets or
.envfiles. - Use strong PostgreSQL credentials in production.
- Keep dependencies updated via CI and regular maintenance.
- Run the API behind appropriate network controls in production.