Only the latest released version of the Assinafy .NET SDK receives security fixes.
Do not report security vulnerabilities in a public issue. Use GitHub private vulnerability reporting and include the affected version, impact, reproduction steps, and any suggested mitigation.
Do not include live API keys, access tokens, account identifiers, signer access codes, or customer documents in a report. Revoke and rotate any credential that may have been exposed.