Untangler runs entirely inside GNOME Shell: it has no network access, no
telemetry, no secrets, and no remote code loading. Its security-relevant
surface is limited to window management and one global Mutter setting
(org.gnome.mutter edge-tiling, in Replace mode).
The latest release receives fixes.
Please report privately via GitHub Security Advisories (https://github.com/bluvulture/untangler/security/advisories/new). Do not open public issues for suspected vulnerabilities. You will get a response within a week.