Do not publish a vulnerability that could compromise FileGuard users, their local evidence, or the project’s release pipeline in a public issue. Instead, use GitHub’s private security-advisory reporting channel for this repository and include a reproducible, minimal description of the issue.
Please do not attach real suspicious files, credential material, personal data, or malware to a report. A benign synthetic fixture and the observed FileGuard version are sufficient for initial triage.
Security fixes target the latest release on the main branch. This project intentionally avoids automatic external submissions and execution of selected files; reports that identify a bypass of either boundary are particularly valuable.