Please report security issues privately. Do not open a public issue, pull request, or discussion for a suspected vulnerability.
Preferred: use GitHub's private vulnerability reporting on this repository (Security tab, then Report a vulnerability).
Alternative: email security@obilabs.dev.
Please include what you found, the affected version or commit, steps to reproduce, and the impact you expect. We will acknowledge your report, keep you updated while we investigate, and credit you in the advisory unless you prefer otherwise.
Security fixes are made against the latest release on the default branch.