This repository is publicly maintained. Do not report vulnerabilities in public GitHub issues.
Use GitHub's private vulnerability reporting flow:
If private reporting is unavailable, contact maintainers through official Livepeer security channels before disclosing details publicly.
Please include:
- A clear description of the issue
- Affected pages/files/components
- Steps to reproduce
- Potential impact
- Any proof-of-concept details needed for validation
- We will acknowledge receipt as quickly as possible.
- We will investigate and coordinate remediation before public disclosure.
- Please avoid sharing exploit details publicly until a fix is available.