Do not report security vulnerabilities through public GitHub issues, discussions, or pull requests.
Email security@inflowpay.ai with the affected repository and version, a description of the vulnerability, reproduction steps or a proof of concept, and the potential impact. Reports are reviewed privately and coordinated disclosure is preferred.
Repository-specific SECURITY.md files take precedence when present.