SynSec is security software and may itself handle sensitive repositories, credentials, findings, and vulnerability data. Please avoid opening a public issue for a vulnerability that could put users at risk.
For now, contact the repository owner privately through an appropriate private channel rather than publishing exploit details in a GitHub issue.
A dedicated security-reporting address and GitHub private vulnerability reporting policy will be added before the first public release.
Useful reports include vulnerabilities in SynSec itself, unsafe handling of repositories under analysis, credential exposure, sandbox escapes, command execution issues, path traversal, authorization failures, and weaknesses that could expose private scan data.