If you discover a security vulnerability, please do not open a public issue immediately.
Instead:
- Contact the maintainers privately.
- Provide a detailed explanation of the issue.
- Include steps to reproduce if possible.
We will review and respond as soon as possible.
At this time, only the latest version of the project is actively maintained and receives security updates.
We aim to follow good security practices:
- Password hashing and secure storage
- Input validation
- Proper error handling
- Authentication and authorization controls
- Protection of sensitive data
We appreciate responsible disclosure and will always credit contributors who report valid vulnerabilities (if they wish to be credited).