The PicoTS team takes the security of our desktop framework and user applications seriously.
We provide security updates and patches for the latest release series:
| Version | Supported |
|---|---|
0.0.x | ✅ Yes |
If you discover a security vulnerability in PicoTS, please do NOT open a public issue on GitHub.
Please report vulnerabilities privately via GitHub Security Advisories:
- Go to Security Advisories and click Report a vulnerability.
Please include:
- A description of the vulnerability.
- Steps to reproduce the issue (proof-of-concept code or minimal repository).
- Potential impact and affected platforms (Windows, macOS, Linux).
- Acknowledgment: Within 48 hours.
- Assessment & Triage: Within 5 business days.
- Fix & Release: Security patches are prioritized and released promptly with credit provided in release notes.