Security

How to report suspected Buildish security vulnerabilities.

Report suspected vulnerabilities privately; do not disclose them in public issues, pull requests, or mailing lists.

Send reports to security@buildish.org.

Include the affected component, versions, reproduction details, impact, and any suggested mitigations to help the report be triaged quickly.

Buildish has not published a release yet. Reports affecting current development branches are welcome.