Please do not disclose vulnerabilities, credentials, private keys, or customer data in a public issue or pull request.
Use GitHub's private vulnerability reporting or a private channel to contact the Optimizr maintainers. Include the affected repository, impact, reproduction steps that do not expose real secrets, and any suggested mitigation.
Security reports are handled privately until maintainers determine that public disclosure is safe. Do not test against production systems or other people's data.