Security reports are accepted for this repository and its build/deployment workflows.
Please use GitHub private vulnerability reporting for this repository.
When reporting, include:
- A clear description of the issue.
- Steps to reproduce.
- Potential impact.
- Suggested mitigation, if available.
- We will acknowledge valid reports as soon as possible.
- We will assess severity and impact.
- We will work on a fix and coordinate disclosure.
Please do not publish details of a vulnerability before a fix is available and maintainers confirm disclosure timing.