If you discover a security vulnerability in this project, please do not open a public GitHub issue. Instead, report it privately by emailing:
Please include:
- A description of the vulnerability and its potential impact
- Steps to reproduce it
- Any relevant logs, screenshots, or proof-of-concept code
You should expect an initial response within a few days. Once a fix is available, we'll coordinate on disclosure timing with you.
This project is deployed continuously from the main branch — only the latest deployed
version is supported. There are no maintained older release branches.
This covers the code in this repository (the marketing site, API server, and shared libraries). It does not cover third-party services this project integrates with (e.g. Paystack, Cloudflare, Supabase) — please report issues with those directly to their vendors.