Cortyxa processes local scientific files and does not require a network connection for normal use. Do not load untrusted NumPy object arrays or plugins. The built-in ALF loader uses allow_pickle=False.
Report security issues privately to the repository owner rather than opening a public issue. Supported security fixes target the latest released version.