MarkSight is a continuously deployed web app. Only the latest main — live at
marksight.laramateo.com — is supported.
Please confirm an issue still reproduces there before reporting.
Please do not report security vulnerabilities through public GitHub issues, as that discloses them before a fix is available.
Instead, use one of these private channels:
- GitHub Private Vulnerability Reporting (preferred) — open a draft advisory from the repo's Security tab.
- Email — laramateoco@gmail.com.
Please include:
- a description of the vulnerability and its impact,
- steps to reproduce (a proof of concept if possible), and
- any relevant logs, screenshots, or affected URLs.
You'll receive an acknowledgement as soon as possible, and we'll keep you updated as the report is investigated and resolved. Thanks for helping keep MarkSight and its users safe. 🙏