openclaw-revenue-engine

Security Policy

Supported Versions

Security updates are provided for the actively maintained main branch and any currently released stable version tags.

Version Supported
main Yes
latest stable release Yes
older versions No

Reporting a Vulnerability

If you believe you have found a security vulnerability in openclaw-revenue-engine, please report it privately rather than opening a public issue.

Please include:

What to Report

Please report:

What Not to Report

Please do not report:

Security Practices

This repository is maintained with a security-first approach:

Response Expectations

We will acknowledge confirmed security reports as soon as practical and work with you to validate, triage, and resolve the issue.

Please do not publicly disclose a vulnerability until a maintainer has had a chance to review and remediate it.

Scope

This policy applies only to the code and configuration in this repository. Any deployed environment must also be secured independently according to its own operational requirements.

Safe Harbor

We consider security research to be conducted in good faith if it is:

Thanks for helping keep openclaw-revenue-engine secure.