The following versions of the hybrid-id-generator
are currently supported with security updates. If you are using an older version, please update to the latest supported version to ensure security fixes are applied.
Version | Supported |
---|---|
3.x.x | ✅ |
2.x.x | ✅ |
If you discover a security vulnerability in the hybrid-id-generator
package, please report it as soon as possible to ensure the safety of all users.
To report a vulnerability:
- Send an email to [email protected] with details of the vulnerability.
- Please include as much information as possible, including steps to reproduce the issue, your environment (e.g., Node.js version), and any potential fixes you have in mind.
- You will receive an initial response within 48 hours confirming receipt of the vulnerability report.
- Once a vulnerability is reported, we will work to verify it within 5 business days.
- If the vulnerability is confirmed, we will work on a fix and release a patched version. You will be kept informed throughout the process and notified when the fix is released.
- If the vulnerability is declined, you will have an explanation.
We take security seriously and will strive to resolve any valid security issues as quickly as possible to ensure the safety of our users and their projects.