If you discover a security vulnerability in this project, please report it responsibly.
Do not open a public GitHub issue for security vulnerabilities.
- Go to GitHub Security Advisories.
- Click Report a vulnerability.
- Fill in the form with:
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix (if any)
- Submit the advisory.
Your report will be reviewed privately by the maintainers.
We aim to acknowledge and respond to security reports within 14 days.
- Vulnerabilities will be addressed promptly.
- A fix will be developed and tested before public disclosure when possible.
- Security advisories will be published when fixes are available.
- Credit will be given to reporters unless they prefer to remain anonymous.
For more information, see GitHub’s Security Policy.