Skip to content

Security: SocioProphet/ontogenesis

SECURITY.md

Security Policy

Supported versions

Security fixes are applied to the default branch and included in subsequent releases.

Reporting a vulnerability

Please do not open a public issue for undisclosed vulnerabilities.

Instead, report privately through the security contact path in SUPPORT.md and include:

  • affected files/modules
  • impact summary
  • proof of concept or reproduction steps
  • suggested mitigation (if available)

Response expectations

Maintainers will acknowledge receipt and triage as quickly as possible, then coordinate remediation and disclosure timing.

Scope

This policy covers ontology artifacts, validation/build scripts, and release/supply-chain outputs in this repository.

There aren’t any published security advisories