# Security Policy
## Supported Versions
Security fixes are provided for the latest released version.
| latest | yes |
| older | no |
## Reporting a Vulnerability
Please do not open public issues for security vulnerabilities.
Use one of these private channels:
1. GitHub Security Advisories for this repository:
`https://github.com/ininids/aam-cli/security/advisories/new`
2. Email the maintainer at `security@ininids.in.rs`.
Include:
- A clear description of the issue and impact.
- Reproduction steps or proof-of-concept.
- Affected version and environment.
- Any suggested mitigation.
## Response Targets
- Initial acknowledgement: within 72 hours.
- Status update: within 7 days.
- Fix timeline: depends on severity and complexity.
## Disclosure Process
After a fix is available, we coordinate disclosure and publish release notes.