# Security Policy
## Reporting a Vulnerability
If you discover a security vulnerability in MCPDome, please report it responsibly.
**Do NOT open a public GitHub issue for security vulnerabilities.**
Instead, email: **orelohayon2468@gmail.com**
Include:
- Description of the vulnerability
- Steps to reproduce
- Impact assessment
- Suggested fix (if any)
You will receive a response within 48 hours. We will work with you to understand and address the issue before any public disclosure.
## Supported Versions
| 0.1.x | Yes |
## Scope
MCPDome is a security gateway. The following are in scope:
- Bypass of policy enforcement
- Injection patterns that evade detection
- Schema pinning circumvention
- Authentication bypass
- Audit log tampering
- Rate limit bypass