Please do not open a public issue for suspected security vulnerabilities.
Report security issues through GitHub Security Advisories for this repository. Include:
- Affected version or commit
- Steps to reproduce
- Expected impact
- Any known workaround
We will acknowledge valid reports, investigate, and coordinate a fix before public disclosure.
Before deploying a public Stackmint app, set APP_ENV=production, APP_DEBUG=false, generate a unique APP_KEY, configure trusted hosts, and set secure session cookie options for HTTPS deployments.