If you believe you have found a security vulnerability in Hirael, we encourage you to let us know right away. We will investigate all legitimate reports and do our best to fix the problem quickly.
Please do not open a public GitHub issue for security vulnerabilities.
Our preference is that you use GitHub's private vulnerability reporting to disclose potential vulnerabilities. To do this, visit the Security tab of the repository and click Report a vulnerability.
If you cannot use private reporting, contact the maintainer privately via the email listed on mohammadshehadeh.com.
Hirael ships component source that consumers copy into their own projects via the shadcn registry, so please note in your report whether an issue affects the showcase site, the registry pipeline, or the published component source.