Skip to content

Security: prysma-llvm/prysma

Security

SECURITY.md

SECURITY POLICY

SUPPORTED VERSIONS

Maintenance and security updates are limited to the following versions:

| Version | Supported |

| ------- | ------------------ |

| 1.0.x | ✅ |

| < 1.0 | ❌ |

REPORTING A VULNERABILITY

All security vulnerabilities must be reported responsibly.

Reporting Procedure

  1. Private Contact: Send a detailed technical description to [zyphorah.zen@gmail.com].

  2. Confidentiality: Do not disclose the vulnerability publicly until an official patch is applied.

  3. Required Content: Reproduction steps, attack vectors, and potential impact on the compiler.

Timeframe and Response

  • Acknowledgement of Receipt: Within 48 business hours.

  • Assessment: Severity analysis and vulnerability confirmation within 7 days.

  • Update: Regular monitoring until patch release.

Any attempt at malicious exploitation or premature disclosure will result in the immediate termination of technical collaboration on the incident.

There aren't any published security advisories