Skip to content

Add AGENTS.md + SECURITY.md security-model discoverability pointer#11353

Open
potiuk wants to merge 1 commit into
apache:mainfrom
potiuk:asf-security/discoverability-2026-06-17
Open

Add AGENTS.md + SECURITY.md security-model discoverability pointer#11353
potiuk wants to merge 1 commit into
apache:mainfrom
potiuk:asf-security/discoverability-2026-06-17

Conversation

@potiuk

@potiuk potiuk commented Jun 17, 2026

Copy link
Copy Markdown
Member

This is a proposal for the NiFi PMC to review — please correct, reject, or discuss as needed.

This wires the conventional AGENTS.md -> SECURITY.md -> security model discoverability chain so an automated security-scan agent can mechanically locate NiFi's existing published security model (https://nifi.apache.org/documentation/security/#security-model).

  • Adds AGENTS.md with a Security section pointing at SECURITY.md.
  • Adds a "Threat Model" pointer in SECURITY.md linking the published security-model page.

No security-model content is added or changed — this is purely the discoverability pointer to the model NiFi already maintains. Context: the ASF Security team is preparing the project for an automated agentic security scan we're piloting; such scans refuse to run unless the model is reachable via this chain. Wording/placement tweaks welcome.

Generated-by: Claude Opus 4.8 (1M context)

@exceptionfactory exceptionfactory self-assigned this Jun 17, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants