# Security Policy
## Supported Versions
| Version | Supported |
|---------|--------------------|
| 0.2.x | :white_check_mark: |
| < 0.2 | :x: |
## Reporting a Vulnerability
Please use [GitHub Private Vulnerability Reporting](https://github.com/coseto6125/etoon/security/advisories/new).
## Verification
All release binaries include:
- `SHA256SUMS.txt` — checksum verification
- [SLSA provenance](https://slsa.dev) attestation — verify with `gh attestation verify`
- [VirusTotal](https://www.virustotal.com) scan reports (linked in release notes)