If you think Nope has a vulnerability, is using a permission it should not, or is sending browsing data somewhere it should not, do not put details in a public Issue. Use GitHub private vulnerability reporting to the repository owner when that feature is available.
If private reporting is not available, file an Issue with the smallest summary needed to reproduce the problem. Do not include cookies, auth tokens, browsing history, block lists, URL query strings, or full-page screenshots.
English and Japanese reports are accepted. There is no promised response or fix window.
Nopeの脆弱性、意図しない権限利用、閲覧情報の送信が疑われる事象は、公開Issueに詳細を書かず、repository ownerへGitHubのprivate vulnerability reportingが利用可能な場合はそちらから報告してください。
private reportingが利用できない場合は、再現に必要な最小限の概要だけをIssueで知らせてください。Cookie、認証トークン、閲覧履歴、ブロック対象、URLのquery、画面全体のスクリーンショットは掲載しないでください。
日本語と英語での報告を受け付けます。返信期限や修正期限は約束しません。