This is the organization-level security policy for the egaprotocol GitHub organization.
For the specification-specific security policy, see
egaprotocol/spec/SECURITY.md.
Do not report security vulnerabilities through public GitHub Issues.
Send a detailed report to security@egaprotocol.org.
We acknowledge receipt within 48 hours and target resolution within 90 days.
Security reports are accepted for:
- Protocol design flaws in the EGAP specification that could enable governance bypass
- Security issues in any published artifact in this organization
- Vulnerabilities in CI/CD infrastructure for any repository under
github.com/egaprotocol
| Purpose | Address |
|---|---|
| Security reports | security@egaprotocol.org |
| General enquiries | hello@egaprotocol.org |
| Governance | governance@egaprotocol.org |
Project home: https://egaprotocol.org