Please do not report suspected vulnerabilities in a public issue, discussion, or pull request.
Use GitHub's private vulnerability-reporting form instead:
https://github.com/Unsupervisedcom/pi-native/security/advisories/new
Include, when available:
- A description of the vulnerability and its impact.
- The affected version, commit, or component.
- Reproduction steps or a proof of concept.
- Any suggested mitigation.
Do not include real credentials, private prompts, user data, or other unnecessary sensitive material. Use minimal test data and clearly mark any details that require special handling.
The maintainers will assess the report and coordinate disclosure and remediation through the private advisory. Please allow time for a fix before publishing details.
PiNative is currently under active development without a packaged public release. Security fixes target the latest code on the default branch.