We provide security fixes for the latest minor release of the Lag Node SDK. Older versions are not maintained.
| Version | Supported |
|---|---|
| 0.1.x | ✅ |
If you discover a security vulnerability in the Lag Node SDK, please report it privately. Do not open a public GitHub issue.
Use one of the following channels:
- GitHub private advisory: https://github.com/lag-app/sdk-node/security/advisories/new
- Email: security@trylag.com
Please include:
- A description of the issue and its potential impact
- Steps to reproduce or a proof of concept
- The SDK version affected
- Any suggested mitigation
We will acknowledge your report within 3 business days and keep you informed as we investigate. Once a fix is available we will coordinate disclosure with you.