mirror of
https://github.com/voideditor/void
synced 2026-05-24 09:58:23 +00:00
chore: Add GitHub hardening files (CODEOWNERS, SECURITY.md, dependabot)
Part of Phase 4 - GitHub structure hardening for Orcest AI ecosystem. Co-Authored-By: Danial Piterson <danial.samiei@gmail.com>
This commit is contained in:
parent
d3163fe450
commit
871c045ea2
3 changed files with 42 additions and 0 deletions
3
.github/CODEOWNERS
vendored
Normal file
3
.github/CODEOWNERS
vendored
Normal file
|
|
@ -0,0 +1,3 @@
|
|||
# Default code owners for all files
|
||||
* @danialsamiei
|
||||
|
||||
12
.github/dependabot.yml
vendored
Normal file
12
.github/dependabot.yml
vendored
Normal file
|
|
@ -0,0 +1,12 @@
|
|||
version: 2
|
||||
updates:
|
||||
- package-ecosystem: "npm"
|
||||
directory: "/"
|
||||
schedule:
|
||||
interval: "weekly"
|
||||
open-pull-requests-limit: 5
|
||||
- package-ecosystem: "github-actions"
|
||||
directory: "/"
|
||||
schedule:
|
||||
interval: "weekly"
|
||||
open-pull-requests-limit: 5
|
||||
27
SECURITY.md
Normal file
27
SECURITY.md
Normal file
|
|
@ -0,0 +1,27 @@
|
|||
# Security Policy
|
||||
|
||||
## Supported Versions
|
||||
|
||||
| Version | Supported |
|
||||
|---------|-----------|
|
||||
| Latest | Yes |
|
||||
|
||||
## Reporting a Vulnerability
|
||||
|
||||
If you discover a security vulnerability, please report it responsibly:
|
||||
|
||||
1. **Do NOT** open a public GitHub issue
|
||||
2. Use [GitHub Security Advisories](https://github.com/orcest-ai/Orcide/security/advisories/new) to report privately
|
||||
3. Or email: support@orcest.ai
|
||||
|
||||
We will acknowledge receipt within 48 hours and provide a timeline for resolution.
|
||||
|
||||
## Security Best Practices
|
||||
|
||||
- All secrets must be stored in environment variables, never in code
|
||||
- All services require SSO authentication via login.orcest.ai
|
||||
- API keys must be rotated regularly
|
||||
- All traffic must use HTTPS/TLS
|
||||
|
||||
Part of the [Orcest AI](https://orcest.ai) ecosystem.
|
||||
|
||||
Loading…
Reference in a new issue