If you believe you have found a security vulnerability in ax-eval, please use GitHub's private vulnerability reporting flow for this repository.
Do not open a public issue for security-sensitive reports.
When possible, include:
- a short description of the issue and its impact
- affected versions or commit ranges
- reproduction steps or a proof of concept
- any suggested mitigation or fix
We will acknowledge new reports promptly, investigate, and coordinate disclosure once a fix is available.
Security fixes are applied to the latest supported version on the main branch.