Do not report security or privacy vulnerabilities in public issues. Contact the repository owner privately through their GitHub profile until a dedicated security contact is published.
Tools in this repository should avoid storing sensitive personal, client, or case information. If storage is necessary, document the threat model, retention period, access controls, and deletion process before deployment.