Skip to content

Security: szl-holdings/amaru

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

Please report security vulnerabilities to stephen@szlholdings.com.

We follow responsible disclosure. Expect an acknowledgement within 48 hours.

Doctrine v6

All vulnerability disclosures are governed by SZL Doctrine v6:

  • No fake security claims
  • STAGED-ADVISORY label for gates not yet machine-checked
  • DSSE receipts on every governance decision

Source: https://github.com/szl-holdings/.github

There aren't any published security advisories