Skip to content

Latest commit

 

History

4 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 

Repository files navigation

Security Policy

This is the default security policy for repositories in the RegEngine organization.

Reporting a vulnerability

Report vulnerabilities privately to legal@regengine.co.

Do not open public issues for security reports. Public disclosure before a fix ships puts users of the affected surfaces at risk; we will acknowledge private reports and coordinate disclosure.

Scope

RegEngine is pre-production software with no production customer data. The public proof surfaces are in scope for integrity bugs:

A report that shows a way to make the verifier attest to tampered or fabricated evidence, or to break the hash-chain integrity guarantees of a published bundle, is exactly what this policy exists for.

About

Public GitHub organization profile for RegEngine.

Topics

Security policy

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Used by

Contributors