Please report security issues privately through GitHub security advisories when available, or by opening a minimal public issue that does not include exploit details.
deny-lens performs static analysis of local policy files and built-in command probes. It should not execute probed commands. A bug that causes command execution, unsafe file writes outside requested output paths, or misleading security results is in scope.
The current 0.x line receives security fixes.