# Security policy

Please report suspected vulnerabilities privately to `info@affgate.com` with the subject **AffGate Slot Catalog security report**.

Include the affected plugin version, WordPress and PHP versions, reproduction steps, impact, and any proof-of-concept material. Please do not include real visitor data and do not publish an unpatched vulnerability before AffGate has had a reasonable opportunity to investigate and release a fix.

Security fixes are released as new plugin versions. Users should keep WordPress, PHP, and this plugin updated and should install the plugin only from AffGate or the official WordPress.org Plugin Directory.
