If you discover a security vulnerability in Silk, please report it responsibly:
- Do not open a public issue
- Email the maintainers directly with details
- Include steps to reproduce if possible
We will acknowledge receipt within 48 hours and provide a fix timeline.
Silk is a desktop UI framework. Security considerations include:
- Code generation: Generated Go files should not contain injection vulnerabilities
- File I/O: Design file loading should validate input
- CGO: Cairo/GLFW bindings should handle malformed data safely
| Version | Supported |
|---|---|
| 2.x | ✅ |
| < 2.0 | ❌ |