Please do not open a public GitHub issue for suspected security problems.
If GitHub private vulnerability reporting is enabled for this repository, use that channel. Otherwise, contact the maintainer privately through GitHub before publishing details.
When reporting an issue, include:
- a short description of the problem
- affected files, commands, or workflows
- steps to reproduce when possible
- impact assessment, especially if local files, API keys, or outbound network requests are involved
This project processes local image files and can call external model or MCP endpoints using user-provided credentials and configuration. Reports involving credential handling, file mutation safety, path handling, or unexpected network behavior are especially helpful.