Only the version currently deployed from the default main branch is supported.
Older commits, branches, builds, and releases are not supported.
This project is a static, client-side GitHub Pages experience. It has no
application accounts, server-side API, or project-operated data store. Reports
should concern security issues in the deployed site or files on main, rather
than general browser, GitHub Pages, or third-party service behavior.
Use GitHub's private Report a vulnerability flow. Do not open a public issue or pull request containing exploit details.
Include:
- a description of the vulnerability and its potential impact;
- the affected URL, file, or code path;
- clear reproduction steps or a minimal proof of concept; and
- relevant browser, operating system, or runtime details.
Do not include credentials or personal data in the report, and do not perform destructive testing against the deployed site or services you do not own.