Slack takes the security of our software and services seriously.
If you believe you have found a security vulnerability, please report it to us privately. Do not open a public GitHub issue, discussion, or pull request.
Report suspected vulnerabilities through Slack's responsible disclosure process at https://slack.com/trust/security, or by email to security@slack.com. Please include enough detail for us to reproduce the issue.
We will acknowledge your report, keep you informed of our progress, and credit you once the issue is resolved (unless you prefer to remain anonymous).