Skip to content

Security: hoangtaiki/DateTimeExtractor

Security

SECURITY.md

Security Policy

Supported Versions

Security fixes are applied to the latest minor release.

Version Supported
1.x

Reporting a Vulnerability

DateTimeExtractor is an offline, dependency-free text-parsing library with a small attack surface - it performs no networking, file, or process access. Even so, if you believe you have found a security issue (for example, a regular expression that can be driven into catastrophic backtracking on crafted input), please report it privately.

Do not open a public issue for security reports.

Instead, either:

You can expect an acknowledgement within a few business days. Once a fix is released, we are happy to credit reporters who wish to be named.

There aren't any published security advisories