Skip to content

Security: uniweb/actus

Security

SECURITY.md

Security Policy

Supported versions

Actus follows semantic versioning. Security fixes are published against the latest released 1.x minor; please track the most recent release.

Version Supported
1.x
< 1.0

Reporting a vulnerability

Please do not report security vulnerabilities through public GitHub issues, discussions, or pull requests.

Instead, use one of the following private channels:

Please include enough detail to reproduce: affected version, a minimal proof of concept, the impact you observed, and any suggested mitigation.

What to expect

  • We aim to acknowledge a report within 3 business days.
  • We will keep you informed as we investigate, and coordinate a disclosure timeline with you once a fix is ready.
  • Because Actus is built directly on hyper and tokio, some reports may turn out to belong upstream — we will help route those appropriately.

There aren't any published security advisories