Security fixes are provided for the latest published TIDE release. Users should upgrade to the newest patch release before reporting a problem that may already have been fixed.
Do not disclose suspected vulnerabilities in a public GitHub issue. Use
GitHub private vulnerability reporting
and include the affected version, reproduction steps, impact, and any proposed
mitigation. If private reporting is unavailable, email
marco.tagliaferri@unitn.it with the subject
TIDE security report.
You should receive an acknowledgment within five business days. Please allow time for investigation and a coordinated fix before public disclosure.
TIDE is research software and is not a medical device. Safety or scientific validity concerns that are not software vulnerabilities should be reported as regular issues without including private participant or clinical data.