Skip to content

Security: goreleaser/goreleaser-pro

SECURITY.md

Security Policy

Supported Versions

Only the last stable version at any given point.

Response Timeline

We aim to acknowledge vulnerability reports within 3 business days. Resolution or assessment is typically provided within 30 days.

Scope

We address vulnerabilities that could compromise the confidentiality, integrity, or availability of GoReleaser or its users.

Credit

We are happy to publicly acknowledge reporters in release notes, unless anonymity is requested.

Reporting a Vulnerability

Vulnerabilities can be disclosed in private using GitHub advisories.

For issues common with GoReleaser OSS, please refer to this instead.

Thanks!

There aren’t any published security advisories