# Security policy

## Reporting a vulnerability

Please report suspected vulnerabilities privately through [GitHub's private vulnerability reporting](https://github.com/dantetekanem/pi-intro/security/advisories/new). Do not open a public issue or include exploit details in public discussions.

Include the affected version, reproduction steps, impact, and any suggested mitigation. Maintainers will acknowledge reports and coordinate disclosure through the private advisory.
