If you discover a security vulnerability in ME Hub, do not open a public issue.
Please use GitHub Private Vulnerability Reporting:
https://github.com/openmetaearth/me-hub/security/advisories/new
This creates a private report visible only to repository maintainers and security managers.
Please include, where possible:
- a short summary of the issue
- the affected component or module
- steps to reproduce the issue
- the expected impact
- a proof of concept, logs, or screenshots if available
You may also include your preferred contact information in the private report, such as your email, Telegram, and MEC wallet address, or share these details later during the private follow-up process.
We will review incoming reports privately and coordinate remediation before any public disclosure.
Please avoid sharing exploit details publicly until a fix or mitigation is available.