Skip to content

Document security policy and threat model#1297

Merged
lovasoa merged 1 commit into
mainfrom
security-policy-threat-model
Jun 5, 2026
Merged

Document security policy and threat model#1297
lovasoa merged 1 commit into
mainfrom
security-policy-threat-model

Conversation

@lovasoa
Copy link
Copy Markdown
Collaborator

@lovasoa lovasoa commented Jun 5, 2026

Summary

Adds a concise SECURITY.md threat model for SQLPage.

The policy defines trusted application/deployment inputs, untrusted attacker-controlled inputs, and the boundary for what should be reported as a SQLPage vulnerability versus an application or deployment issue.

Validation

  • git diff --check
  • Documentation-only change; no Rust or frontend checks were run.

@lovasoa lovasoa force-pushed the security-policy-threat-model branch from a5da8d3 to 42d774b Compare June 5, 2026 14:59
@lovasoa lovasoa force-pushed the security-policy-threat-model branch from 42d774b to 84b0388 Compare June 5, 2026 15:09
@lovasoa lovasoa marked this pull request as ready for review June 5, 2026 19:37
@lovasoa lovasoa merged commit 96de587 into main Jun 5, 2026
51 checks passed
@lovasoa lovasoa deleted the security-policy-threat-model branch June 5, 2026 19:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant