Maintainer Radar is a local repository scanner. It should not upload repository contents, source code, secrets, or metadata unless a future feature explicitly asks the user to opt in.
To report a vulnerability, open a private security advisory on GitHub or contact the maintainer by email. Please include affected versions, reproduction steps, and expected impact.