This repository is a learning collection with many independent projects. Security
fixes are considered for the latest state of the main branch. Older snapshots
and archived experiments may not receive security updates.
Please do not report a security vulnerability through a public GitHub issue, discussion, or pull request.
Use GitHub's private vulnerability reporting option for this repository when it is available. If that option is not available, contact Abdul Rahman through GitHub and include:
- A clear description of the vulnerability
- The affected project, file, or endpoint
- Steps to reproduce the issue
- The possible security impact
- Any suggested fix or mitigation
Please do not include passwords, API keys, tokens, or other private data in a report.
Reports will be reviewed as soon as practical. The maintainer may ask for additional details, work on a fix, and publish an update once the issue has been resolved. Please avoid publicly disclosing the issue until a fix or mitigation is available.
This policy covers security issues in the source code and configuration maintained in this repository. Vulnerabilities in third-party services, dependencies, or external APIs should also be reported to their respective maintainers.