Only the latest published stable Rule-Bot version receives security fixes. The
default branch and the mutable latest container tag can contain unreleased
changes and are not substitutes for a stable release.
Use this repository's private vulnerability reporting form. Do not open a public Issue for a suspected vulnerability.
Include the affected version or container revision, the reachable entry point, the expected security boundary, and a minimal reproduction when available. Do not include Telegram or GitHub tokens, Rule-Bot Client credentials, private API paths, unredacted domain submissions, private network addresses, or complete configuration files.
Operational questions and ordinary defects that do not cross a security or privacy boundary can use GitHub Issues after sensitive values are removed.