Skip to content

Security: ops-workflows/agentic-ops-platform

Security

SECURITY.md

Security Policy

Reporting Vulnerabilities

Please report suspected vulnerabilities privately through the repository's security advisory process. Do not open a public issue for exploitable behavior, secret exposure, sandbox bypasses, or credential handling defects.

If the vulnerability involves a private workflow repository, report it through that repository's private process as well.

Security model

The platform's security model — permissions, the sandbox credential deny-list, bundle integrity, approval gating, encrypted secrets, secret-handling rules, and the public/private scope boundary — is documented in docs/security.md.

There aren't any published security advisories