Skip to content

Security: bedrock-python/pg-partsmith

SECURITY.md

Security Policy

Supported versions

Version Supported
1.5.x ✅ the current release; fixes ship as the next patch or minor
older ❌ upgrade to the current release first

The library, the command line and the container image share one version number, so a fix reaches all three in the same release.

Reporting a vulnerability

Please do not report security vulnerabilities via public GitHub Issues.

Report it privately through GitHub, by opening a draft security advisory, or send an email to shalaevad.alexey@gmail.com. Either way, include:

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact and affected versions

We aim to acknowledge reports within 48 hours and provide a fix within 7 days for critical issues.

Once the fix is released, we will credit you in the release notes unless you prefer to remain anonymous.

There aren't any published security advisories