Skip to content

Security: qectorlab/qector-decoder-v3-verification

Security

SECURITY.md

Security Policy

Supported versions

The verification artifacts in this repository are tied to a specific version of the underlying decoder wheel. The currently supported pair is:

Artifact tag Wheel version Reference manual
1.0.0-verified qector-decoder-v3==1.0.0 v1.0.0 (DOI 10.5281/zenodo.21941046)

New versions of the wheel will produce a new artifact tag.

Reporting a vulnerability

Please report security issues in the underlying decoder wheel (qector-decoder-v3) directly to:

admin@qector.store

For issues in the verification scripts themselves (the Python files under scripts/), open a GitHub issue in this repository.

Local-only secrets

The local/ directory is gitignored and is the only place a license key is expected to live. Do not commit the key, and do not paste it into issues, pull requests, or CI logs.

There aren't any published security advisories