If you discover a security vulnerability in a Exbil repository, please report it privately. Do not open a public issue.
- Use GitHub's private vulnerability reporting on the affected repository, or
- email contact@exbil.net with the details.
Please include the affected repository and version, a description of the issue and its impact, and steps to reproduce or a proof of concept.
We aim to acknowledge reports within 3 business days and will keep you informed about the progress towards a fix.
Security fixes are applied to the latest released version of each project.