Please report suspected vulnerabilities privately to security@mindot.io. Do not open a public issue for security problems.
Include what you can: affected version/commit, a reproduction or proof of concept, and impact assessment. You'll get an acknowledgement within 72 hours and a status update as we triage.
This repository contains the Will cognitive engine. Reports about the hosted Mindot platform (mindot.io) are also welcome at the same address.
Pre-1.0: only the latest release receives security fixes.