Do not use public issues for a potential vulnerability, target details, raw traffic, credentials, tokens, cookies, or proof material.
Use GitHub private vulnerability reporting instead. Include a minimal description, affected revision, safe reproduction steps, and impact. Remove or mask sensitive values before submitting.
This policy covers OpenHunterAI source and its public documentation. Reports about third-party targets tested with OpenHunterAI must be sent to that target's owner through its published disclosure channel.
HungBil will acknowledge reports, assess impact, and coordinate a remediation or disclosure timeline where applicable. No bounty is promised by this policy.