Security reporting
Report suspected security vulnerabilities through GitHub private vulnerability reporting. This sends the report to repository maintainers without publishing it as an issue. Include the affected commit, impact, and a minimal reproducer where possible; exclude credentials and private research data.
Security fixes are developed on the current main branch. Maintainers
coordinate investigation and disclosure through the private advisory.
For numerical discrepancies, installation problems, or research questions, use the public issue templates with the relevant inputs, environment, and processed results.