Skip to content

Security: DarekDGB/DigiByte-AdamantineOS

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in AdamantineOS,
please report it responsibly and privately.

📧 Security Contact Email:
adamantinewalletos@gmail.com


Scope

This security policy applies to:

  • Core execution contracts
  • Enforcement logic (EQC, WSQK, TVA)
  • Adapter validation boundaries
  • Deterministic policy handling

Out of Scope

The following are not considered security vulnerabilities:

  • Missing features
  • Design disagreements
  • Performance optimizations
  • User interface behavior
  • Third-party integrations not maintained here

Disclosure Guidelines

Please include:

  • A clear description of the issue
  • Steps to reproduce (if applicable)
  • Impact assessment
  • Any suggested mitigations

Do not open public GitHub issues for security-sensitive findings.


Response Commitment

Valid reports will receive:

  • Acknowledgement within a reasonable timeframe
  • Investigation and assessment
  • Coordinated disclosure if applicable

Philosophy

Security in AdamantineOS is based on:

  • Explicit authority
  • Deterministic behavior
  • Fail-closed execution
  • Auditable design

Thank you for helping keep the project secure.

There aren't any published security advisories