Please do not open public issues for suspected security vulnerabilities.
Use GitHub private vulnerability reporting when it is available on this repository. If that is not available, contact the maintainer privately with a short description, affected versions or commits, reproduction details, and any known impact.
For Erlang/Elixir ecosystem CVE coordination, the Erlang Ecosystem Foundation CNA can be reached at cna@erlef.org.
Security fixes are handled on the default branch unless a maintained release branch is explicitly documented in this repository.