Skip to content

Security: tetri/SemanticVersioning

SECURITY.md

Security Policy

Supported Versions

The latest published NuGet package receives security updates. Older versions are not actively patched — please upgrade to the latest release.

Version Supported
>= 0.2 ✅ Yes
< 0.2 ❌ No

Reporting a Vulnerability

If you discover a security vulnerability, do not open a public issue. Please report it privately via email:

security@tetri.net

You can expect an acknowledgment within 48 hours and a status update within 5 business days. Once the issue is triaged, we will work on a fix and publish a new release as soon as possible.

Preferred Process

  1. Report the vulnerability via email.
  2. Allow time for triage and patch development.
  3. Once the fix is released, we will credit the reporter (if desired) in the release notes.

There aren't any published security advisories