You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: SECURITY.md
+8-19Lines changed: 8 additions & 19 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -20,40 +20,29 @@ Please include the following in your report:
20
20
* Step-by-step instructions to reproduce the issue
21
21
* Impact of the issue and how an attacker might exploit it
22
22
23
-
## Supported Versions
24
-
25
-
### New Features
26
-
27
-
New features are only added to the latest major release and will not be backported to older versions.
28
-
29
-
### Bug Fixes
30
-
31
-
Only the latest release series receives bug fixes. When enough bugs are fixed and a new release is warranted, it is cut from the main branch.
23
+
## Supported Security Updates
32
24
33
25
### Security Issues
34
26
35
-
Only the latest release series receives patches and new versions in the case of a security issue.
27
+
Only the latest release series receives patches and new versions in the case of a security issue. See our [deprecation policy](https://developer.paypal.com/braintree/docs/guides/client-sdk/deprecation-policy/android/v5/) for details.
36
28
37
29
### Severe Security Issues
38
30
39
31
For severe security issues, we will provide new versions as above. Additionally, the last major release series may receive patches at our discretion. Severity classification is determined by the Braintree SDK team.
40
32
41
-
### Unsupported Release Series
42
-
43
-
When a release series is no longer supported, it is your responsibility to manage bugs and security issues. If you are not comfortable maintaining your own versions, we strongly recommend upgrading to a supported release.
| Android | Most widely used versions at the time of SDK release |
38
+
39
+
For details on supported platform versions, see our [deprecation policy](https://developer.paypal.com/braintree/docs/guides/client-sdk/deprecation-policy/android/v5/).
50
40
51
41
## Disclosure Policy
52
42
53
43
We are committed to working with security researchers in good faith. To support responsible disclosure, our team will:
54
44
55
-
- Acknowledge your report within **2 business days**
56
-
- Provide a triage update within **5 business days**
0 commit comments