Skip to content

Security: m-marinucci/Tol

Security

SECURITY.md

Security Policy

Supported Versions

The following versions of TOL are currently being supported with security updates:

Version Supported
3.x.x
< 3.0

Reporting a Vulnerability

We take the security of TOL seriously. If you have discovered a security vulnerability, please follow these steps:

  1. DO NOT disclose the vulnerability publicly until it has been addressed
  2. Email your findings to: [email protected]
  3. Include as much information as possible:
    • Description of the vulnerability
    • Steps to reproduce
    • Potential impact
    • Suggested fix (if any)

Response Timeline

  • Initial Response: Within 48 hours
  • Status Update: Within 7 days
  • Resolution Target: Within 30 days for critical issues
  • Disclosure: 90 days after initial report or when fix is released

Security Best Practices

When using TOL:

  • Always use the latest stable version
  • Enable compiler security flags when building from source
  • Report any suspicious behavior or potential vulnerabilities

Thank you for helping keep TOL secure!

There aren’t any published security advisories