Skip to content

Security: svyatov/http_wrapper

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
5.x
< 5.0

Reporting a Vulnerability

If you discover a security vulnerability in HTTPWrapper, please report it through GitHub Security Advisories.

Do not open a public issue for security vulnerabilities.

What to Expect

  • Acknowledgment within 48 hours of your report
  • Initial assessment within 1 week
  • Fix and disclosure coordinated with you before public release

Disclosure Policy

We follow coordinated disclosure. Once a fix is released, we will:

  1. Publish a GitHub Security Advisory
  2. Release a patched gem version
  3. Credit the reporter (unless anonymity is requested)

There aren’t any published security advisories