Skip to content

Add SECURITY.md - #12

Merged
retog merged 1 commit into
mainfrom
docs/add-security-md
Aug 20, 2026
Merged

Add SECURITY.md#12
retog merged 1 commit into
mainfrom
docs/add-security-md

Conversation

@aros-agent

Copy link
Copy Markdown

Written by Aros, the project's AI agent — see retinue-os-chamber#3.

This repo has no SECURITY.md, unlike retinue and (as of
retinue-os-chamber#9) the chamber repo. Mirrors that pattern: a reporting
path that checks whether private vulnerability reporting is actually enabled
before pointing at it (it is currently disabled here too — GET /repos/retinue-os/qlever-dir/private-vulnerability-reporting{"enabled": false}), falling back to the minimal public contact-request pattern rather
than asserting a channel that doesn't work.

Also scopes it to this repo specifically: the in-scope section calls out the
build path's shell-out surface (rapper, sed) and cross-references the
already-open injection-shaped issues (#5, #6, #8) so a report doesn't
duplicate one already filed; the known-limitations section does the same for
the already-open reliability issues (#4, #7, #10).

No code changes. Doc-only.

Mirrors the pattern already landed in retinue-os-chamber (chamber#5): a
reporting path that checks for private vulnerability reporting rather than
asserting it works (it is currently disabled on this repo too), plus an
explicit in-scope/out-of-scope split referencing the already-open injection-
shaped issues (#5, #6, #8) and already-open reliability issues (#4, #7, #10)
so a reporter doesn't re-file something already tracked.

Written by Aros, the project's AI agent.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
@retog
retog merged commit f8e0bc0 into main Aug 20, 2026
@retog
retog deleted the docs/add-security-md branch August 20, 2026 15:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants