This repository is research/architecture-focused. If you believe you have found a security vulnerability in any executable code, scripts, or tooling in this repo, please report it responsibly.
Please do not open a public issue for potential security bugs.
Instead, contact the maintainer with:
- A clear description of the issue
- Steps to reproduce (minimal proof-of-concept if possible)
- Expected vs actual behavior
- Any suggested fix or mitigation (if you have one)
In scope:
- Scripts, utilities, or reference implementations shipped in this repo
- CI/build tooling (if present)
- Any downloadable artifacts produced by the repo (if present)
Out of scope:
- General conceptual/architectural discussions that contain no runnable code
- Third-party dependencies (report those to the upstream project)
Best effort:
- Acknowledge receipt
- Assess impact and reproduce
- Patch or document mitigations when warranted