If you discover a security vulnerability in this repository, please report it privately. Do not open a public issue, pull request, or discussion, as that may expose the vulnerability before it can be addressed.
Report a vulnerability through either of these channels:
- GitHub private vulnerability reporting — use the repository's Security → Report a vulnerability tab to open a private advisory.
- Email — send details to donpetry@gmail.com with the subject line "SECURITY".
Please include enough information to reproduce and assess the issue (affected component, steps to reproduce, and potential impact).
- We will acknowledge your report within 5 business days.
- We will keep you informed as we investigate and work toward a fix.
- Please give us a reasonable opportunity to remediate the issue before any public disclosure.
Thank you for helping keep this project and its users safe.