analytics/SECURITY.md
2021-03-04 11:40:57 +02:00

13 lines
678 B
Markdown

# Security Policy
## Supported Versions
We only add security updates to the latest MAJOR.MINOR version of the project. No security updates are backported to previous versions. If you
want be up to date on security patches, make sure your Plausible image is up to date with `plausible/analytics:latest`
## Reporting a Vulnerability
If you've found a security vulnerability with the Plausible codebase, you can disclose it responsibly by sending a summary to security@plausible.io.
We will review the potential threat and fix it as fast as we can. We are incredibly thankful for people who disclose vulnerabilities, unfortunately we do not
have a bounty program in place yet.