This repository follows the ContextualWisdomLab organization security policy. Supported versions, disclosure expectations, and the coordinated response process are maintained there as the single source of truth.
Do not disclose a suspected vulnerability in a public issue. Submit it through html4tree private vulnerability reporting and include the affected commit or release, reproduction steps, impact, and any suggested mitigation.