Do not disclose suspected vulnerabilities in public Issues. Report them to research@asr-lab.online with the affected repository, impact, reproduction steps and any proposed mitigation.
Never commit credentials, API keys, passwords, private datasets, unpublished confidential manuscripts or private meeting access details. Revoke exposed credentials immediately; removing them from Git history alone is insufficient.