Skip to content

Security: ROCm/spur

SECURITY.md

Security Policy

Supported Versions

Spur is under active development. Security fixes are applied to the main branch only.

Version Supported
main

Reporting a Vulnerability

Do not report security vulnerabilities through public GitHub issues, discussions, or pull requests.

Instead, use one of the following channels:

For details on AMD's vulnerability disclosure process, see AMD Product Security.

When reporting, please include:

  • Affected version, commit SHA, or branch
  • Description of the vulnerability and its potential impact
  • Steps to reproduce or a proof of concept

Response

All reports are treated with the highest priority and resolved at the earliest based on severity. Reporters are kept updated throughout the process.

There aren't any published security advisories