If you discover a security vulnerability in Start with A, please do not open a public issue.
Instead, report it privately by emailing:
Include as much detail as possible:
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix (if you have one)
- You will receive an acknowledgment within 48 hours.
- We will work with you to understand and resolve the issue.
- Once fixed, we will credit you in the release notes (unless you prefer to remain anonymous).
This policy covers the Start with A application code in this repository. It does not cover third-party dependencies, though we appreciate reports about vulnerable dependencies as well.
| Version | Supported |
|---|---|
| v1.x | ✅ |
| < v1.0 | ❌ |
Thank you for helping keep Start with A secure.