The latest release (and main) receives security fixes. Forks created from
this template own their copies — apply upstream fixes via the release notes
(see UPGRADE.md).
Please use GitHub's private vulnerability reporting: Security → Report a vulnerability on k2gl/pragmatic-franken.
Do not open public issues for security problems. You will get an initial response within 7 days.
Release images are built by GitHub Actions and published to GHCR with
build provenance attestations; verify them before deploying — see
docs/guides/supply-chain.md.