If you discover a security vulnerability, please report it responsibly by emailing the project maintainers directly rather than creating a public issue.
We will acknowledge receipt within 48 hours and aim to provide a fix within a reasonable timeframe.