Only the latest main branch and the latest published crate release are supported.
Please do not open public issues for security reports.
Use one of these channels:
- GitHub Security Advisories for this repository (preferred).
- A private email to the maintainer listed in
README.md.
Include reproduction steps, impact, and affected version/tag if known.
- Report is acknowledged.
- Impact and exploitability are validated.
- A fix is prepared and tested.
- A patched release tag is published.
- Public disclosure follows once users can upgrade safely.