Security updates are applied only to the latest published version of Renma.
Report suspected security vulnerabilities privately. Do not include sensitive exploit details, secrets, or proof-of-concept material in a public GitHub issue.
Use GitHub Security Advisories or private vulnerability reporting when that option is available for this repository. If it is unavailable, ask the maintainers for a private reporting channel without disclosing sensitive details publicly.
Allow maintainers to review and coordinate a fix before public disclosure. Public disclosure should happen only after coordinated review.