# Security Policy ## Supported Versions This project receives security updates for the latest maintained minor release only. ## Reporting a Vulnerability Please do not open a public issue for security-sensitive findings. Instead, report the issue privately to the repository maintainers or raise it through the platform's security advisory workflow when available. ## Scope Security-sensitive findings include leaked API keys, rate-limit bypasses, injection flaws, unsafe file handling, or dependency vulnerabilities affecting the runtime pipeline.