| Version | Supported |
|---|---|
| 0.1.x | yes |
Do NOT open a public issue. Use GitHub private vulnerability reporting.
Scope: anything that lets campaign state escape the configured SQLite/Postgres store, or prompt-injection paths that reach tool execution. We respond within 7 days.