Do not report vulnerabilities in public issues, discussions, or pull requests. Use GitHub Private Vulnerability Reporting.
Include the affected version, prerequisites, reproducible steps, impact, and a suggested fix when available. Remove tokens, passwords, public IP addresses, and private environment details from logs.
RootGuard is in public alpha. Security fixes target the latest published alpha; older alpha versions do not receive separate backports.