Skip to content

Security: ejikezebedee/devops-partner

Security

SECURITY.md

Security Policy

DevOps Partner is an infrastructure automation tool, so safety issues are treated seriously.

Supported Version

The MVP branch supports version 0.1.x.

Reporting a Vulnerability

Open a private security advisory or contact the maintainers through the repository security channel.

Do not publish exploit details before maintainers have had time to respond.

Security Boundaries

  • The tool must not store SSH passwords.
  • The tool must not store private keys.
  • The tool must not execute remote commands without explicit approval.
  • The tool must not hide destructive operations inside natural-language requests.
  • Generated deployment commands must be readable before execution.

Privacy

100% Private: DevOps Partner collects zero tracking, telemetry, or remote logs. Everything stays on your machine unless you explicitly run commands against your own server.

There aren't any published security advisories