Please do not open a public issue for security vulnerabilities. Use GitHub's private Security Advisories instead.
Include:
- A description of the vulnerability and its potential impact
- Steps to reproduce
- Affected URL(s) or component(s)
This repository does not use semantic versioning — the main branch reflects what is currently deployed to production, so there are no separate legacy versions to track.
Reports will be acknowledged as soon as possible, and you'll be kept updated as the issue is investigated and resolved.