We take the security of this project seriously. If you believe you have found a security vulnerability, please report it to us responsibly using the instructions below.
Please do not open public GitHub issues for security vulnerabilities.
Instead, please use GitHub's Private Vulnerability Reporting feature:
- Navigate to the main page of the repository.
- Under the repository name, click Security.
- In the left sidebar, click Reporting.
- Click Report a vulnerability to open the advisory form.
Alternatively, you can use this direct link: Report a Security Vulnerability
- Acknowledgment: We will acknowledge receipt of your report within 48 hours.
- Evaluation: We will investigate the issue and keep you updated via the private GitHub Advisory thread.
- Disclosure: Once a fix is ready, we will coordinate the release and publish a Security Advisory to credit your work (if desired).