Policy preview

This page shows the shared policy pattern for the documentation platform. The full disclosure policy ships with the first public product release.

Reporting a security issue

If you believe you have found a security issue in an Achron product or in this documentation site, email [email protected] with a description of what you found and how to reproduce it. Please do not open a public issue or post details before we have responded.

What this page will cover

Before the first public release, this page will state:

  • The supported versions that receive security fixes.
  • The expected response time for a report.
  • The disclosure process and how credit is handled.
  • Which product components are in scope.

Scope today

Coldstart documentation is in preview and ROOK is in private alpha. Neither product has a public installer, so there is no released artifact to assess yet; reports about this documentation site itself are still welcome.