DuneBoard is currently a local-first planning tool and does not yet process untrusted remote input by default.
If you find a security issue, do not post exploit details in a public issue. Use GitHub private vulnerability reporting if it is enabled for the repository. If it is not enabled yet, contact the maintainer through the GitHub profile and share only the minimum information needed to coordinate a private report.
No stable release exists yet. Security fixes apply to main until versioned
releases begin.