Security fixes and dependency maintenance are currently applied to the latest version on the main branch.
If you discover a security issue in this repository, please do not open a public issue with full exploit details.
Instead, report it privately with:
- A short description of the issue
- Steps to reproduce it
- The affected file, workflow, or dependency when known
- Any proof-of-concept details that help validate the report
- Your preferred contact method for follow-up
You can reach me through GitHub security reporting when available, or by contacting me through the public channels listed on the portfolio site and GitHub profile.
I will review the report, confirm impact, and work on a fix as quickly as possible. Coordinated disclosure is appreciated.