| Version | Supported |
|---|---|
| 0.9.x | ✅ |
| < 0.9 | ❌ |
If you discover a security vulnerability in BEAM, please report it responsibly:
- Preferred: Use GitHub's private vulnerability reporting feature (Security tab → "Report a vulnerability")
- Alternative: Email david.r.newman@proton.me
Please do not open a public GitHub issue for security vulnerabilities.
- Acknowledgment: Within 72 hours
- Assessment: Within 7 days
- Fix for critical issues: Within 30 days
- Disclosure: After fix is released, or 90 days from report (whichever is sooner)
- Dependency advisories monitored via
cargo-auditandcargo-deny - All releases pass
cargo auditbefore publishing - CI enforces
clippy -D warningsand zero compiler warnings