uquic/SECURITY.md
Gaukas Wang 95575f5fe7
break: update repo url [ci skip]
uTLS is not yet bumped to the new version, so this commit breaks the dependencies relationship by getting rid of the local replace.
2023-08-03 18:58:52 -06:00

863 B

Security Policy

quic-go still in development. This means that there may be problems in our protocols, or there may be mistakes in our implementations. We take security vulnerabilities very seriously. If you discover a security issue, please bring it to our attention right away!

Reporting a Vulnerability

If you find a vulnerability that may affect live deployments -- for example, by exposing a remote execution exploit -- please report privately. Please DO NOT file a public issue.

If the issue is an implementation weakness that cannot be immediately exploited or something not yet deployed, just discuss it openly.

Reporting a non security bug

For non-security bugs, please simply file a GitHub issue.