Skip to content

Security: AlfaCode-Team/http

Security

SECURITY.md

Security Policy

Supported Versions

The latest released minor version receives security fixes. Because this package sits on the request/response boundary, we take reports seriously and aim to respond quickly.

Version Supported
latest
older

Reporting a Vulnerability

Please do not open a public issue for security vulnerabilities.

Instead, report privately via one of:

Please include:

  • a description of the vulnerability and its impact,
  • steps to reproduce (a minimal proof of concept if possible),
  • the affected version(s) and PHP version.

What to expect

  • We will acknowledge your report within 72 hours.
  • We will provide an assessment and a remediation timeline as soon as possible.
  • We will credit you in the release notes once a fix is published, unless you prefer to remain anonymous.

Thank you for helping keep the community safe.

There aren't any published security advisories