Skip to content

Security: RR009N/RR-framework

Security

SECURITY.md

Security Policy

RR-framework is an Excel-based methodology and diagnostic workbook. It may be used to collect sensitive organizational information, including risk, technology, operational, workforce, supply chain, and crisis-readiness data.

Supported versions

Version Supported
2.0 Yes
< 2.0 No

Reporting security issues

If you identify a security issue in the workbook, documentation, repository, or future integration logic, please report it privately to the repository maintainer rather than opening a public issue.

Recommended report content:

  • Affected version.
  • Affected sheet or file.
  • Description of the issue.
  • Steps to reproduce.
  • Potential impact.
  • Suggested fix, if available.

Data handling warning

Do not upload completed client assessments, confidential questionnaire responses, personal data, or sensitive risk information to public GitHub issues, pull requests, or discussions.

Use anonymized examples only.

Macro policy

The workbook is intended to work without macros and ships as a standard .xlsx. Users should be cautious with any modified version that introduces macros, external connections, or scripts.


Attribution: RR-framework v3.0 — Copyright (C) 2026 Roman Reznikov.
Author: Roman Reznikov. ORCID: https://orcid.org/0000-0001-5581-5651.
DOI: 10.5281/zenodo.20583866. Concept DOI: 10.5281/zenodo.20583865.
License: Creative Commons Attribution-NonCommercial-ShareAlike 4.0 International (CC-BY-NC-SA-4.0). Commercial use requires separate written permission.

There aren't any published security advisories