Skip to content

Latest commit

 

History

History
10 lines (9 loc) · 1.28 KB

SECURITY.md

File metadata and controls

10 lines (9 loc) · 1.28 KB

Security Policy

Supported Versions

The <major>.<minor>.* versions of this are pinned to the supported <major>.<minor>.* versions of the gems that are published by the dependabot-core repository, centric to the dependabot-common gem, with any required patches applied to each supported minor version.

Bugs present in only the most recent pinned minor version may be patched and contribute to successive patch versions. If a bug exists in an older version and no longer exists in a newer version, it is suggested to update to the newer version. As the underlying package this wraps, dependabot[-omnibus], is a live service, it makes sense for this to only roll forward.

Reporting a Vulnerability

Raise a Security Vulnerability issue.