Security Policy¶
Supported Versions¶
| Version | Supported |
|---|---|
| 0.x |
Reporting a Vulnerability¶
If you discover a security vulnerability in RoboDev, please report it responsibly.
Do not open a public GitHub issue for security vulnerabilities.
Instead, please email: security@robodev.dev (placeholder)
What to Include¶
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix (if any)
Response Timeline¶
- Acknowledgement: within 48 hours
- Initial assessment: within 1 week
- Fix and disclosure: coordinated with reporter
Security Design¶
RoboDev follows a defence-in-depth approach. See the Security Model for the full security model and threat analysis.