# Security Policy
## Reporting Security Vulnerabilities
If you discover a security vulnerability, please report it privately by email to:
security@meta.com
Do not report security issues in public GitHub issues, pull requests, or discussions.
## Scope
This policy covers security issues related to this repository, including:
- Dangerous or unsafe commands, tool grants, or escalation guidance in `SKILL.md` content
- Dangerous or unsafe helper scripts, assets, examples, or reference docs shipped with a skill
- Guidance that could cause insecure app behavior if followed as written
- Vulnerabilities in `hzdb` MCP server integration workflows documented in this repo
## Response
Meta will acknowledge receipt of your report and follow up with next steps.