Security fixes target the current production release and main.
Do not open public issues containing private recordings, trusted-contact data, precise location history, device identifiers, credentials, or exploit details that could expose user information.
Prefer GitHub private vulnerability reporting / Security Advisories when available.
SmartProBono is local-first: changes should preserve minimal data collection, explicit sharing, and least-privilege permission use.