PHP-TUF is in a pre-release state and is not considered a complete or secure version of the TUF framework. It should currently only be used for testing, development and feedback.
Do not use in production for secure target downloads!!
We appreciate any help finding security issues.
Security issues can be disclosed publicly until the first release. If you think you have found a security issue, please:
- Search the existing security issues to see if the issue is already known.
- If the issue is not found please create a new issue and add the "security" label to the issue.