dropwizard/dropwizard

View on GitHub
SECURITY.md

Summary

Maintainability
Test Coverage
# Security Policy

## Supported Versions

In general, the currently stable and the previously stable major & minor versions are supported.

For example, Dropwizard 2.0.x will receive critical security fixes while Dropwizard 2.1.x is the current stable version.

Once Dropwizard 2.2.x has been released, Dropwizard 2.0.x will be unsupported and Dropwizard 2.1.x will only receive critical security fixes.

| Version | Supported          |
|---------|--------------------|
| 2.1.x   | :white_check_mark: |
| 2.0.x   | :white_check_mark: |
| < 2.0   | :x:                |

## Reporting a Vulnerability

To responsibly disclose security issues in Dropwizard, you can use the following contacts:

* Send an email to dropwizard.committers+security@gmail.com
* Send a direct message on Twitter: [@dropwizardio](https://twitter.com/dropwizardio)

We'll be contacting you as fast as possible after receiving your message.