Security Policy Reporting a Vulnerability If you find a security issue (hardcoded credentials, API key exposure, etc.), open an issue or email the repo owner directly. Secret scanning is enabled on this repo — pushes containing secrets will be blocked automatically.