This document explains the potential vulnerability of this repository and provide contact information for reporting security issues. Thank you so much for your vigilance and contribution.
The biggest concern would be arbitrary code execution via the distributed PDF edition. Before every push to main, the PDF will be freshly recompiled from scratch after the code screening.
You can file a report regarding potential vulnerabilities and security issues to Security Advisories tab of this repository.