Skip to content

Security: kernel-v38-project/energy-core-compliance-framework

Security

SECURITY.md

Security Policy

Supported Versions

We take the security of Energy Core seriously. Currently, only the latest release on the main branch is actively supported with security updates.

Version Supported
>=1.0.0
< 1.0.0

Reporting a Vulnerability

If you discover a potential security vulnerability within this framework (especially regarding deterministic smart contract logic, data notarization, or asynchronous processing isolation), please do not open a public GitHub issue. Publicly disclosing a vulnerability can put production assets at risk.

Instead, please report vulnerabilities professionally by following these steps:

  1. Email us directly: Send a detailed report to [Your Dedicated Project Email, e.g., security@kernel-v38.project - Replace this with yours].
  2. Describe the issue: Include a description of the vulnerability, the potential impact, and steps, code, or logs to reproduce the behavior.
  3. Acknowledgment: We will acknowledge receipt of your vulnerability report within 48 hours and provide a timeline for a patch or mitigation strategy.

Thank you for helping keep Energy Core secure for the community and utility operators.

There aren't any published security advisories