Skip to content

Security: ElementAstro/Lithium

Security

SECURITY.md

安全策略

支持的版本

为了确保项目的安全性和稳定性,Lithium将仅支持最新版本的软件。每个大版本都有一个确定的生命周期,过期后将停止维护。目前支持的版本如下:

版本 支持情况
indev
1.0.0

报告漏洞

我们欢迎用户发现并报告任何与安全相关的问题或漏洞。您可以通过以下方式报告漏洞:

  • 在我们的 QQ 群中进行报告。
  • 在我们的 GitHub 仓库上创建一个 Issue 并详细描述该漏洞。

请注意,只有通过上述指定渠道报告的漏洞才能被有效处理。其他途径的漏洞报告可能无法及时收到回应。

我们将尽快调查和处理您报告的漏洞,并在必要时采取适当的纠正措施。对于被确认为有效的安全漏洞,我们将致力于及时修复,并感谢您的合作和贡献。

感谢您对Lithium项目安全的关注和支持!

Security Policy

Supported Versions

Lithium follows an aggressive update strategy and typically only provides support for the latest software version. Bugs in older versions are generally fixed in the newer releases. Each major version has its own lifecycle, and support for older versions is discontinued once they reach their end of life.

Version Supported
indev
1.0.0

Reporting a Vulnerability

If you discover any vulnerabilities, please report them by joining our QQ group or submitting an issue on GitHub. Vulnerability reports through other channels may not be effectively addressed.

We appreciate detailed vulnerability reports that include sufficient information to understand and reproduce the issue. By following responsible disclosure practices, you help us address the vulnerability effectively and protect our users.

Please note that only vulnerabilities reported through the specified channels will be considered for further investigation. We will make our best efforts to investigate and resolve the reported vulnerabilities promptly. Once the vulnerability is confirmed, we will take appropriate corrective actions.

Thank you for your attention to the security of the Lithium project and your contribution towards making it more secure.

There aren’t any published security advisories