Security fixes target the latest official release. Include the affected version or commit when reporting a problem.
Use GitHub private vulnerability reporting. Do not disclose an unreported vulnerability in a public issue or pull request.
Include:
- The affected version or commit
- A clear description of the problem
- Minimal reproduction steps
- The potential impact
- A suggested fix, if you have one
Do not include passwords, tokens, private documents, or unrelated personal information. Use a non-confidential example whenever possible.
Latestwise compares documents locally within user-approved folders. Reports about access outside that scope, unsafe document parsing, unintended modification, or exposure of document information are in scope.
Allow time for investigation and a fix before publishing technical details. The maintainer will coordinate disclosure through the private report.
For installation help, usage questions, and ordinary bug reports, use GitHub Issues.