Unless explicitly stated otherwise in a specific repository, the projects under this account do not use versioned releases. Only the latest commit on the default branch (main) is actively supported and evaluated for security updates.
If you discover a security vulnerability within any of the repositories, please do not open a public issue.
Please use the Report a vulnerability button in the Security tab of the relevant repository to disclose any security issues privately. This utilizes GitHub's native Private Vulnerability Reporting feature.
To help expedite the review, consider using the GitHub Security Lab report template when filling out the advisory details. If you have a proposed code fix, you can also start a temporary private fork directly from the advisory page to submit your patch securely.
All reports will be reviewed and acknowledged through GitHub's private advisory system.