Please do not publish exploitable security details in a public issue.
If you discover a vulnerability, contact the repository owner through the GitHub profile and include:
- affected component or endpoint
- reproduction steps
- expected and actual behavior
- impact assessment
- suggested mitigation, if available
Please avoid including real credentials, access tokens, personal data or production secrets in reports.
Security reports related to request validation, data exposure, authorization, database access, background jobs and deployment configuration are welcome.
The latest revision on the default branch is the actively maintained portfolio version of this project.