| Version | Supported |
|---|---|
| latest release tag | yes |
| main branch | best-effort |
This public repository contains standards, templates, and reference scripts only — no production services, credentials, or user data.
If you believe you have found a security issue:
- Do not open a public issue for sensitive findings.
- Email the maintainer via GitHub private security advisory (preferred) or the contact method listed on the maintainer's GitHub profile.
- Include: affected file/path, impact, and minimal reproduction if applicable.
- Vulnerabilities in the maintainer's private applications not present in this repo.
- Theoretical attacks against example/synthetic content in
examples/worked-example/. - Social engineering or prompt-injection examples without a concrete flaw in shipped templates.
Releases are validated with forbidden-path and secret-pattern checks before publication. If you find a committed secret in this repo, report immediately — it should not be present.