# Security Policy
## Supported versions
Security fixes are applied to the latest release line.
| Latest release | Yes |
| Older releases | Best effort |
## Reporting a vulnerability
Please do not report security vulnerabilities in public issues.
Use GitHub's private vulnerability reporting for this repository, or contact the maintainer listed in the package metadata. Include:
- affected version or commit
- a concise impact description
- reproduction steps or proof of concept, if available
- whether the issue is already public
## Response expectations
The maintainer will triage reports as soon as practical and coordinate a fix, release, and advisory when appropriate.