rTime is pre-1.0. Security fixes are released against the latest published version only; please upgrade to the newest release before reporting.
| Version | Supported |
|---|---|
| latest (0.14.x) | ✅ |
| older | ❌ |
Please do not open a public issue for security vulnerabilities.
Report privately through GitHub's private vulnerability reporting:
- Go to the Security tab of this repository.
- Click Report a vulnerability.
- Provide a description, affected version(s), and reproduction steps.
We aim to acknowledge reports within 72 hours and to provide a remediation timeline after triage. Because rTime disciplines the system clock and can bind privileged ports, please flag any issue touching time-stepping, privilege handling, or NTS/TLS authentication as high severity.
Thank you for helping keep rTime and its users safe.