Skip to content

Files

Latest commit

Mar 28, 2025
fa8351a · Mar 28, 2025

History

History
20 lines (12 loc) · 780 Bytes

SECURITY.md

File metadata and controls

20 lines (12 loc) · 780 Bytes

Security Policy

Supported Versions

We support security updates for all current major versions since 1.x.

Reporting a Vulnerability

We take the security of Unhead seriously. If you believe you've found a security vulnerability, please:

  • Email us at harlan@harlanzw.com with details about the vulnerability
  • OR submit a security advisory through the GitHub repository (not as a regular issue)
  • Include steps to reproduce the vulnerability
  • If possible, include impact and recommendations for mitigation

We'll acknowledge receipt of your report promptly and work on addressing the issue.

Scope

Please note that we do not consider XSS vulnerabilities when using the innerHTML attribute as security issues, as this is an inherent risk when using this feature.