Greenlight is pre-1.0. We give security fixes only for the latest minor release. We will review this policy after we release version 1.0.
Do not open a public issue for a security problem.
Report the problem privately through GitHub Security Advisories in this repository. On the Security tab, select "Report a vulnerability".
We will acknowledge your report. We will coordinate a fix or mitigation plan with you before public disclosure.