Thank you for helping keep Parametron users and contributors safe.
Do not open a public GitHub issue for a suspected security vulnerability.
Use GitHub private vulnerability reporting in the affected repository when it is available.
If private vulnerability reporting is not available, contact info@parametron.io with the subject Security Report.
Please include, when possible:
- the affected repository and version or commit
- a clear description of the issue
- reproduction steps or a minimal proof of concept
- the expected security impact
- any known mitigations
- whether the issue has been disclosed elsewhere
Avoid including credentials, personal data, or unrelated sensitive information.
Parametron is an early-stage project and does not currently promise a fixed security-response SLA. Reports will be reviewed as promptly as practical, and coordinated disclosure is appreciated.
Public disclosure should wait until a reasonable remediation or disclosure plan has been agreed where possible.