If you discover a potential security issue related to the public contents of this repository:
- do not post full exploit details in a public issue
- contact the maintainer privately first
- include a clear description of the risk
- include reproduction details only when necessary
This repository is a public handoff package, not the complete internal project source tree.
That means:
- some reports may apply only to the public materials here
- some product-level reports may require follow-up in a separate private repository or internal codebase
The currently supported public state is:
mainbranch documentation and public handoff materials- Windows-first public positioning
macOS-related materials are not fully included at this time and may be added later.
Reasonable efforts will be made to:
- acknowledge valid reports
- assess severity
- decide whether the issue belongs in this public repo or elsewhere
- provide a fix or mitigation when appropriate