Pad-Lattice is alpha software. Security fixes are applied to the latest
published alpha and the current main branch; older alpha builds are not
maintained.
Please use GitHub private vulnerability reporting. Do not publish exploitable details in a normal issue.
Include the affected version or commit, threat scenario, reproduction steps, impact, and any suggested mitigation. Do not include real credentials, Codex transcripts, or other private data.
If private reporting is unavailable, open a minimal issue asking the maintainer to establish a private contact channel, without disclosing the vulnerability.
The maintained threat model, trust boundaries, and deployment guidance are in the Security Model documentation.