GossamerDB is currently in a pre-1.0 design phase. Once v1.0.0 is released, we will provide security updates for the current major/minor release.
| Version | Supported |
|---|---|
| < 1.0 | ❌ (Pre-GA) |
| 1.0.x | ✅ |
We take the security of GossamerDB seriously, especially given our focus on mTLS-by-default and robust cluster operations.
Please do not report security vulnerabilities through public GitHub issues.
Instead, please report them via GitHub Security Advisories by going to the Security tab in this repository and clicking Report a vulnerability.
We will acknowledge receipt of your vulnerability report within 48 hours and strive to send you regular updates about our progress. If the vulnerability is accepted, we will coordinate a public disclosure and patch release with you.