Security fixes are provided for the latest published stable 0.1.x release. Prerelease builds
remain supported only until the next stable release replaces them.
| Release line | Security fixes |
|---|---|
Latest stable 0.1.x |
Yes |
| Older releases and prereleases | No |
Report suspected vulnerabilities privately by email to stefan@ml4trading.io with the subject
[ml4t-models security]. Do not open a public issue.
Include the affected version, impact, reproduction steps, and any known mitigation. Do not include credentials, proprietary datasets, or other secrets.
The maintainer will acknowledge a report within seven calendar days and provide an initial assessment within fourteen calendar days. Publication and fix timing depend on severity, exploitability, and coordination with affected dependencies.
Reports about a dependency are welcome when the vulnerability affects an ml4t-models workflow.
The project may refer the report to the dependency maintainer after coordinating disclosure with
the reporter.