Skip to content

Security: sjnims/intacct-release-notes

SECURITY.md

Security Policy

Supported Versions

Only the latest version on the main branch is supported with security updates.

Reporting a Vulnerability

Please report security vulnerabilities through GitHub private vulnerability reporting.

You will receive an acknowledgment within 72 hours. The report will be investigated and you will be updated on the outcome.

Scope

The following are in scope for security reports:

  • Credential exposure — secrets or API keys accidentally committed
  • Dependency vulnerabilities — exploitable issues in project dependencies
  • Injection via scraped content — malicious content from upstream pages that could affect downstream consumers of the generated markdown

General bugs and feature requests should be filed as regular issues.

There aren’t any published security advisories