Groundnut processes evidence and can be embedded in consequential workflows. Report a vulnerability through the private vulnerability reporting of GitHub, not through a public issue:
https://github.com/b1rdmania/groundnut/security/advisories/new
Include the affected revision, a minimal synthetic reproduction, the expected impact, and a suggested mitigation. Do not include credentials, private source material, or protected evaluation data.
The current development branch is supported. Historical research snapshots and downstream consumer integrations are not separate supported products.