SECURITY.MD
We take security seriously and provide security updates for the latest version zerobrew. We strongly recommend keeping your zerobrew dependencies up to date.
Please do not report security vulnerabilities through public GitHub issues.
If you discover a security vulnerability in nmrs or any of the related crates, please report it privately by emailing lucas.gelfondATgmail.com.
Please include the following information in your report:
For zerobrew, security vulnerabilities may include but are not limited to:
For the CLI specifically:
We are committed to responding to security reports promptly:
Response times may vary based on the complexity of the issue and availability of maintainers.
We follow a coordinated disclosure process:
We request that you:
Published security advisories will be available through:
We appreciate the security research community's efforts to improve the security of zerobrew. With your permission, we will acknowledge your contribution in:
If you prefer to remain anonymous, please let us know in your report.
This security policy covers zerobrew wholly.
Thank you for helping to keep zerobrew and the Rust ecosystem secure!