Security policy

August 6, 2026 ยท View on GitHub

Supported versions

Security fixes are provided for the latest released version and the current main branch. Older releases may be asked to upgrade before receiving a fix.

Reporting a vulnerability

Do not report a vulnerability in a public issue. Use GitHub private vulnerability reporting at:

https://github.com/bodenberg/appdimens-ios/security/advisories/new

Include the affected version or commit, platform and toolchain, impact, reproduction steps, and any proposed mitigation. Avoid including unrelated personal or production data.

The maintainers will acknowledge a report when it is reviewed, coordinate validation and remediation privately, and publish an advisory when users have an actionable fix. Please allow reasonable time for a coordinated release before public disclosure.

Scope

Reports may cover unsafe memory behavior, dependency or workflow compromise, unexpected disclosure, and defects in Metal buffer handling. Ordinary dimension differences, integration questions, and API enhancement requests belong in the public issue tracker.