Skip to content

Security: SentinelOps-CI/provability-fabric-core

Security

SECURITY.md

Security Policy

Supported versions

Version Supported
0.7.x Yes
0.6.x Best-effort
< 0.6 No

Reporting a vulnerability

This repository is private. Report suspected vulnerabilities in the trusted kernel (pf-core/lean, pf-core/schemas, pf-core/validator/pf_core) or adapter integrity handling privately to the maintainers via the organization's private security channel. Do not open public issues for exploitable defects.

Include: affected commit/tag, reproduction under network-disabled conditions, and whether the issue crosses the trusted/untrusted boundary.

Scope notes

  • Untrusted adapters (adapters/) are not a security boundary for predicate truth.
  • Reward-binding certificates assert binding under A11–A14; they do not assert objective correctness or verifier accuracy.

There aren't any published security advisories