Skip to content

Security: alawein/fallax

Security

SECURITY.md

type canonical
owner platform-engineering
last-reviewed 2026-03-31

Security Policy

Reporting a Vulnerability

Please report suspected vulnerabilities by opening a private security advisory on this repository or by contacting @alawein directly.

Do not open public issues for security vulnerabilities.

What To Include

  • Affected component or file path
  • Reproduction steps or proof of concept
  • Impact and severity estimate
  • Suggested remediation, if known

Response Targets

  • Initial triage response: 2 business days
  • Severity assessment: 5 business days
  • Mitigation plan: 10 business days

Scope

This policy applies to all code and configuration in this repository.

Disclosure Process

  • We acknowledge reports after triage.
  • We coordinate remediation and release timeline.
  • We publish advisory notes when appropriate.

There aren't any published security advisories