Please do not report vulnerabilities in public issues. Until a dedicated security contact is configured, report them privately to the repository owner through GitHub's private vulnerability reporting feature after it is enabled.
Include a clear reproduction, affected version, impact, and any mitigation you identified. We will acknowledge reports promptly and coordinate disclosure after a fix is available.
HiveLang hosts tools but does not authorize them. Applications embedding HiveLang must validate tool arguments, apply authorization, and use approval controls for consequential actions.