We take security bugs in Echo seriously. We appreciate your efforts to responsibly disclose your findings, and will make every effort to acknowledge your contributions.
Please use the button below to privately report a potential security vulnerability to the maintainer. Clicking this will redirect you to GitHub's secure vulnerability reporting tool, ensuring your report goes directly to me and remains completely hidden from the public until patched.
We will send a response indicating the next steps in handling your report. After the initial reply to your report, we will keep you informed of the progress towards a fix and full announcement, and may ask for additional information or guidance.
Report security bugs in third-party dependencies to the person or team maintaining the package or dependency.