Thank you for privately reporting security issues!
If you have found a security issue, please open a draft advisory at https://github.com/minrk/findspark/security/advisories .
Once you create a draft advisory, we will work together to:
- confirm the issue (and close the advisory if none is found)
- prepare a fix
- publish the fix to PyPI
- notify tidelift (package security sponsor)
- publish advisory, once the fix is widely available (up to 7 days after release, depending on severity)