Security is taken seriously across every repository in this organization.
Please do not open a public issue for security reports.
Report privately through GitHub's private vulnerability reporting on the affected repository:
Repository → Security tab → Report a vulnerability
If the repository does not have that tab enabled, open a minimal public issue asking a maintainer to open a private channel — without including any exploit detail.
- We aim to acknowledge a report within a few business days.
- We will keep you updated as we investigate and work toward a fix.
- We will credit reporters who wish to be credited once a fix is released.
This policy covers the code published under this organization. The ƒxyz application and its production infrastructure are not part of these public repositories; vulnerabilities in the hosted service are out of scope here.