# Security Policy

## Supported Versions

We currently support the latest stable version of PUQcloud.

| Version   | Supported |
|-----------|-----------|
| latest    | ✅        |

## Reporting a Vulnerability

If you discover a security vulnerability in PUQcloud, **please DO NOT open a public issue**.

Instead, report it directly and privately to us:

- 📧 Email: support@puqcloud.com

Please include as much detail as possible, including:

- Steps to reproduce
- A description of the vulnerability
- A proof of concept (if possible)

We will investigate and respond within **3–5 business days**.  
If confirmed, we will work to release a patch as soon as possible and credit the reporter (optional).

## Disclosure Policy

We prefer **coordinated disclosure**.  
We will not publicly disclose vulnerabilities until a patch is released and users have had reasonable time to update.

---

**Thank you for helping make PUQcloud more secure!**
