Please do not open public GitHub issues for security vulnerabilities.
Email security concerns to: mullassery@gmail.com
Include:
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix (if any)
We will acknowledge receipt within 24 hours and provide updates on remediation progress.
| Version | Supported |
|---|---|
| Latest | Yes |
| Previous | Limited |
| Older | No |
- Always use the latest version
- Report vulnerabilities privately
- Never share vulnerability details publicly before patch
- Use environment variables for secrets (not hardcoded)
- Keep dependencies updated
- Enable GitHub security features
When a security issue is confirmed:
- We develop and test a fix
- We release a new version with security patch
- We notify users of the vulnerability and fix
- We credit the reporter (if desired)
Security Team: mullassery@gmail.com