SwiftTUI is pre-1.0 software. The project does not yet offer a formal security SLA. Report security vulnerabilities privately first.
If GitHub private vulnerability reporting is available, use it for
SwiftTUI/swift-tui. If it is not available, email security@swifttui.sh.
Contact the maintainers privately before you open a public issue.
Please include:
- affected version, tag, or commit
- reproduction steps or a minimal proof of concept
- expected impact and any known mitigations
Do not disclose a vulnerability publicly until a maintainer investigates it and coordinates a fix.
Only the latest tagged pre-1.0 release and the current main branch are
supported for security triage. An older alpha tag can receive a fix if the
fix has low risk and is practical to backport.