Security fixes are provided for the latest published version of
homebridge-nilan. Users should also run a supported Node.js and Homebridge
release.
Do not disclose suspected vulnerabilities in a public issue. Use the repository's GitHub Report a vulnerability flow under the Security tab. If that option is not available, contact the maintainer privately through the contact information on their GitHub profile and include a minimal description without exploit details.
Please include affected versions, impact, reproduction steps or a proof of concept, and any suggested mitigation. You should receive an acknowledgement within seven days. A coordinated disclosure timeline will be agreed after the report is validated.