Skip to main content

Security Policy

Supported Versions

We generally support the latest minor release of the project. Security fixes will be backported at our discretion.

Reporting a Vulnerability

Please do not create a public issue for security vulnerabilities. Instead, click on the "Report a vulnerability" button on the top right of https://github.com/leighton-digital/lambda-toolkit/security. We'll acknowledge receipt within 2 business days and provide a timeline for a fix once triaged.

Disclosure

After a fix is released, we'll credit reporters (if desired) in the release notes.