The project team welcomes security reports and is committed to providing prompt attention to security issues.
Security issues SHOULD be reported privately via email.
Security issues SHOULD NOT be reported via the public GitHub Issue tracker.
The project team is committed to transparency in the security issue disclosure process. Security advisories will be published through Github Security Advisories.