Do not open public issues for suspected vulnerabilities, exposed credentials, updater-signing problems, release-artifact tampering, or private service details.
Email support@fieldtheory.dev with [security] in the subject.
Include the affected artifact name, version, download URL, platform, and enough reproduction detail for a maintainer to confirm the issue.
Do not include secrets, signing credentials, private logs, or account tokens in the report.