If you believe you’ve found a security issue, please report it responsibly.
Do not open a public GitHub issue for security vulnerabilities.
- Prefer private disclosure: email the maintainer or report via GitHub’s private vulnerability reporting if available.
- Include steps to reproduce and impact.
- We’ll respond as soon as we can and work on a fix and disclosure plan.
This repo is for learning and reference. Don’t use it as the only security layer in production; follow current best practices (e.g. HTTPS, secret management, dependency updates).