Reshade doesn't listen on any ports afaik -- it's not network aware afaik. How could it possibly cause a vulnerability? Why do you think you'd need to block reshade behind a firewall?
"Aside from blocking domains ReShade uses when game executables are not blocked by firewall, there is no known way to force ReShade to be offline."
What are you talking about? Are you high?
In any case, if you're concerned about security on your machine, then you need a software firewall that by default blocks EVERYTHING outgoing unless you specifically whitelist the executable. And if you're super extra paranoid, then you need to compile all your programs too... so you're running linux and not gaming on it anyways due to being 3+ VM levels deep your pc runs like it's 2005.
