Do not open a public issue for a suspected vulnerability. Contact support@pipsync.io with subject [SECURITY], the affected version, reproduction steps, and impact. Do not include live API keys, account identifiers, customer signals, or broker credentials.
The calculations in this repository are not a substitute for server-side risk enforcement. Broker contract specifications and account state remain authoritative.