inference-lab is a local-first project, but responsible disclosure still matters.
Security fixes will be issued for the latest public release line.
If you believe you have found a security issue:
- Do not open a public issue with exploit details.
- Use GitHub's private security advisory flow if available.
- Include the affected version, a short description, and clear reproduction steps.
- version or commit hash
- platform details
- steps to reproduce
- expected vs actual behavior
- whether the issue affects local-only usage or shared environments
We will review reports as quickly as possible and coordinate a fix before public disclosure when appropriate.