# Canonical and Policy must be absolute by spec. Replace modelfoundry.example with the live host when mirroring. Contact: mailto:security@modelfoundry.invalid Preferred-Languages: en, ru Canonical: https://modelfoundry.example/.well-known/security.txt Policy: https://modelfoundry.example/security.html Scope: CLI, Python client, inference runtime, manifest and verification pipeline, key service Encryption: request a signed-message channel by mail; the key fingerprint is published in the repository Acknowledgements: credited in the release advisory unless anonymity is preferred