Report suspected vulnerabilities in a published artifact or ODEI public surface privately to ai@odei.ai.
Research corrections that do not create a security risk may use the same address. Identify whether the submission is a security report, source correction, methodological challenge, or legal-review note.
Do not probe live infrastructure, owner data, wallets, or third-party services without written authorization.