This is experimental, unaudited software, published as an engineering reference. It has not been reviewed by a third party and must not be used with real funds without an independent audit.
The design and its assumptions are documented in docs/THREAT_MODEL.md.
Found an issue? Please open a GitHub issue for non-sensitive reports, or reach the author privately for anything exploitable rather than filing it publicly.