Skip to content

Update security policy to include guidance on "Supported Versions" #12260

@sethmlarson

Description

@sethmlarson

What's the problem this feature will solve?

Usually security policies will include guidance on what versions are eligible for security fixes. I believe pip's historical behavior has been to only apply security patches to the latest release of pip (not backporting security fixes). If this isn't correct we can amend this to whatever future behavior the pip maintainers would like to do for security fixes.

Describe the solution you'd like

Update security policy with guidance on supported versions.

Alternative Solutions

N/A

Additional context

#12254

Code of Conduct

Metadata

Metadata

Assignees

No one assigned

    Labels

    state: needs eyesNeeds a maintainer/triager to take a closer looktype: docsDocumentation relatedtype: maintenanceRelated to Development and Maintenance Processestype: securityHas potential security implications

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions