Skip to content

Security: Hello-GregKulp/freshness-spec

Security

SECURITY.md

Security Policy

Supported Versions

This repository contains an experimental specification, examples, schema, and a small validation tool. There are no supported runtime versions at this stage.

Security-relevant fixes to the current working specification and validator are welcome.

Reporting a Vulnerability

Please do not report security vulnerabilities by opening a public issue.

Use this placeholder contact until the project publishes a dedicated channel:

TODO: security@example.com

When reporting, include:

  • affected file or behavior
  • reproduction steps, if applicable
  • expected impact
  • suggested remediation, if known

Security Scope

This project does not provide access control, deletion enforcement, retention enforcement, or policy enforcement. Freshness metadata is advisory and semantic.

Do not put secrets, credentials, tokens, private customer data, undisclosed vulnerability details, or sensitive operational details in freshness metadata.

There aren't any published security advisories