Security fixes are applied to the latest version on the main branch.
Please do not report security vulnerabilities through public GitHub issues.
This project is a static frontend with no backend and no user data storage. If you discover a security issue (for example, a dependency vulnerability or an XSS vector in a pattern demo), report it privately:
- Email: daniel.albinsson@gmail.com
- Or open a GitHub private security advisory once the repository is public
Include steps to reproduce, affected files or URLs, and the impact you believe the issue has.
We aim to acknowledge reports within 7 days and share a remediation plan or fix timeline as soon as we have assessed the issue.