= Security Policy == Reporting a Vulnerability If you think you have found a security vulnerability, please **DO NOT** disclose it publicly until we’ve had a chance to fix it. Please don’t report security vulnerabilities using GitHub issues, instead head over to https://pivotal.io/security and learn how to disclose them responsibly.