Security updates and maintenance patches are actively applied to the latest version on the main branch.
| Version | Supported |
|---|---|
main |
✅ |
| < 1.0 | ❌ |
We take the security and integrity of Ocean Watch and its automated advisory data pipeline seriously. If you discover a potential vulnerability or security issue:
- Do not open a public issue.
- Please report the vulnerability privately via GitHub Security Advisories or contact the project maintainer directly (@pkmdinesh).
- Please include:
- A clear description of the vulnerability and its potential impact
- Step-by-step reproduction instructions or a minimal proof-of-concept
- Affected files, workflows, or client endpoints
- Acknowledgement: We aim to acknowledge receipt of vulnerability reports within 48 hours.
- Investigation: We will triage and assess the reported issue promptly.
- Remediation & Deployment: Verified security fixes will be developed, tested, committed to
main, and deployed directly to GitHub Pages. - Recognition: We will appropriately credit security reporters in advisories and commit logs unless anonymity is requested.