Skip to content

Security: docusign/pangaea

SECURITY.md

Security Policy

Supported Versions

Pangaea is pre-1.0 and under active development. Security fixes are applied to the latest released version of each published package. We recommend always using the most recent release.

Reporting a Vulnerability

Please do not report security vulnerabilities through public GitHub issues.

Instead, report them privately using GitHub's private vulnerability reporting ("Report a vulnerability" in the repository Security tab).

Please include:

  • A description of the vulnerability and its impact.
  • Steps to reproduce, or a proof of concept.
  • Affected package(s) and version(s).
  • Any suggested remediation, if known.

What to Expect

We take all reports seriously and will investigate promptly. We'll keep you informed of our progress and coordinate disclosure once a fix is available.

We ask that you give us a reasonable opportunity to address the issue before any public disclosure. Thank you for helping keep Pangaea and its users safe.

There aren't any published security advisories