Only the latest release receives security fixes.
Please do not open a public issue for security problems.
Use GitHub's private reporting: Security → Report a vulnerability in this repository. If that is unavailable, contact the maintainer through the email on their GitHub profile.
You can expect an initial response within 7 days. Please include the affected version, steps to reproduce and the potential impact.
This tool handles Azure DevOps Personal Access Tokens. Never paste a real PAT in an issue or log. If you believe a token was leaked, revoke it in Azure DevOps immediately.