SECURITY.md•788 B
# Security Policy
## Supported Versions
This project is maintained on a best-effort basis. Security issues will generally be
addressed in the latest release. Older versions may not receive patches.
## Reporting a Vulnerability
Please report security vulnerabilities privately.
- Email: security@bigbug.ai
- Alternatively, open a GitHub security advisory (preferred if available).
Do not disclose the issue publicly until it has been triaged and a fix is available
or a coordinated disclosure timeline is agreed upon.
## Guidelines
- Include steps to reproduce, impact assessment, and any known mitigations.
- Avoid sharing sensitive data or secrets in reports.
- If you have a working proof-of-concept, please share it privately only.
Thank you for helping keep the community safe.