Security fixes are applied to the latest release on main.
Please do not open a public GitHub issue for security vulnerabilities.
Instead, report privately using one of these options:
- GitHub Security Advisories (preferred): open a private vulnerability report on this repository via Security → Advisories → Report a vulnerability.
- Contact the Actx0 maintainers through the organization profile if private reporting is unavailable.
Please include:
- A description of the issue and its impact
- Steps to reproduce, or a proof of concept if available
- Affected versions / commit hashes if known
We will acknowledge reports as soon as practical and keep you updated on remediation. Please give us reasonable time to investigate and release a fix before any public disclosure.