RootLag parses untrusted container metadata and files. Please report parser, path-handling, decompression, authentication, or resource-exhaustion issues through a private GitHub security advisory or by email to kel.amoaba@gmail.com.
Include the affected version or commit, a minimal reproducer when safe, and the expected security impact. Do not attach credentials, private keys, or private image contents.