@filippo
Maybe, as a bank, you should not be using a random library taken from the internet, with a single maintainer and some 100 stars, and make it a critical dependency of your banking operations.
Maybe, as a bank, your IT should write and maintain such a library and open source it.
Maybe, as a bank, you should not continue to use the first library, and do the second thing after the first library was able to take down critical parts of your infra the first time.
Because we live in a society, and as a bank, you should be contributing to it, too.
But then, what do I know.
@julijane