Please report suspected vulnerabilities privately to security@followframe.com.
Include the FollowFrame version, Windows version, a concise reproduction, and the impact you observed. Do not send passwords, cookies, session files, private media, or unrelated personal data. You should receive an acknowledgement within seven days.
Do not open a public issue until the report has been reviewed and a coordinated disclosure date has been agreed.