If you discover a security vulnerability, please do NOT open a public issue.
Instead, send a private report to the repository maintainers via GitHub's Security Advisories feature.
We will acknowledge receipt within 48 hours and provide a timeline for a fix.