Do not open a public issue for a suspected vulnerability or include exploit details, credentials, personal data, or private logs in a public discussion.
Use GitHub's private vulnerability reporting for this repository:
- Open the repository's Security tab.
- Select Advisories and then Report a vulnerability.
- Include affected versions, impact, reproduction steps, and a minimal proof of concept with secrets and personal data removed.
If the private-reporting button is unavailable, send the report confidentially to info@rsitech.ai. Do not copy a confidential report to a public issue or discussion.
Maintainers will acknowledge the report in the private advisory, investigate, coordinate a fix and disclosure window, and credit the reporter if requested. Please do not test against systems or data you do not own or have permission to use.
Security fixes target the latest source revision and the latest official release. Community forks and self-built binaries are maintained by their respective publishers.