Please do not open public issues for security vulnerabilities.
Report privately to the BitPod maintainers and include:
- affected repository and commit/branch
- reproduction steps
- impact assessment
- suggested remediation (if known)
We will acknowledge receipt and coordinate remediation and disclosure timing.