# Security Policy
## Supported Versions
We provide security updates for the latest released version. For older versions, please upgrade to the current release.
## Reporting a Vulnerability
If you discover a security vulnerability, please email **security@faf.one** directly.
**Please do not open a public GitHub issue for security reports.** Responsible disclosure gives us time to fix the issue before it's widely known.
When reporting, please include:
- A description of the vulnerability
- Steps to reproduce
- Affected versions (if known)
- Any suggested fix (optional)
We aim to respond within 7 days.