Please report security issues privately by emailing the maintainer or opening a private security advisory on GitHub if the repository host supports it.
Do not open a public issue for vulnerabilities that could expose users or repositories to harm.
When reporting, include:
- Affected version or commit.
- Steps to reproduce.
- Expected and actual behavior.
- Any relevant logs, screenshots, or sample repositories.
The project currently has no formal support window. Security fixes are prioritized for the default branch.