Please report security issues privately by email:
Do not open a public GitHub issue for private keys, credentials, subscription links, server configs, or vulnerabilities that could expose users.
The project should not store real VPN profiles, UUIDs, passwords, private keys, production configs, or signing keys in git.
Generated Android release files (.apk, .aab) should be uploaded to GitHub
Releases instead of being committed to the repository.
The latest GitHub Release is the supported version.