Skip to content

Security: Nicolas-Pedernera/ai-workflow-backend

Security

SECURITY.md

Security Policy

Supported versions

Security fixes are applied to the actively developed version of the project.

Reporting a vulnerability

Please report suspected vulnerabilities privately rather than opening a public issue.

Include:

  • affected component
  • reproduction steps
  • potential impact
  • suggested mitigation, if known

Never include secrets, private keys, API keys or credentials in vulnerability reports.

Security principles

  • least privilege
  • environment-based secret management
  • explicit blockchain write authorization
  • centralized error handling
  • automated testing
  • code quality validation

This project is not an audited security product. Production deployments require an appropriate security review.

There aren't any published security advisories