Only the latest tagged beta or stable release of each plugin receives security fixes.
Report vulnerabilities through GitHub private vulnerability reporting for this repository. Identify the affected plugin and version, and do not include credentials, confidential documents, customer data, or unredacted provider responses.
Each plugin may define additional threat-model and data-handling guidance in its own directory. Read that guidance before installation or use.