Skip to content

Security: xyo-financial/sdk-cpp

Security

SECURITY.md

πŸ›‘οΈ Security Policy

πŸ“‹ Supported Versions

Only the current major release line of the XYO C++ SDK receives active security updates and patches.

Version Supported End of Security Support
2.x βœ… Active
< 2.1.0 ❌ End of Life (EOL)

βš™οΈ Language Standard & Compiler LTS Support Policy

C++ Standard & Compiler LTS Support Schedule

Policy Guarantee

XYO Financial adheres to strict ISO C++ standards and enterprise compiler toolchain baselines:

  • Minimum Baseline Floor: We guarantee support for the ISO C++17 standard on enterprise-grade compilers (GCC 9+, Clang 10+, MSVC 2019+ / 2022, and Apple Clang 12+).
  • 3-Month Proactive Window: We will never increase compiler or standard requirements without at least 3 months advance notice prior to deprecating an older toolchain baseline.
Standard / Toolchain Baseline Version Status SDK Support Level
ISO C++23 GCC 13+, Clang 16+, MSVC v143 βœ… Modern Target Fully Compatible
ISO C++20 GCC 11+, Clang 13+, MSVC v142 βœ… Recommended Fully Compatible
ISO C++17 GCC 9+, Clang 10+, MSVC 2019 πŸ”’ Baseline Floor Guaranteed Minimum Baseline
< ISO C++17 GCC < 9, Clang < 10, MSVC < 2019 ❌ Deprecated Unsupported / Incompatible

🚨 Reporting a Vulnerability

If you discover a potential security vulnerability in this SDK, please do not report it publicly through a GitHub issue. Instead, report it privately:

  • Email: security@syniol.com
  • Response Time: We will acknowledge receipt of your vulnerability report within 48 hours and provide a detailed response on next steps within 5 business days.

There aren't any published security advisories