← Files Canonical Memory VerifierARCHIVED FILE

SECURITY.md

773 Bytes · Sep 30, 2026 · 23:13 UTC

↓ Download file

# Security policy

## Supported version

Only the latest released `0.1.x` version will be supported after public
release. The current tree is a pre-publication candidate.

## Reporting

After the clean public repository is created, use GitHub private vulnerability
reporting for security-sensitive findings. Do not place exploit details,
private memory content, credentials, personal data, or proprietary bundles in a
public issue.

For ordinary defects, create a minimal reproduction using synthetic data. The
publisher cannot accept private vaults or complete conversation archives for
debugging.

## Boundary

This verifier is a data-conformance check, not a runtime authorization control.
The host must independently enforce live approval, sandboxing, and tool policy.

SHA-256: b35841881901961afa51a03da1d8627cfe33fce17ef5db16e70de1a2b176fff2