Skip to content

Security: 410979729/proofrail-openclaw

Security

SECURITY.md

Security Policy

If you believe you have found a security issue in Proofrail for OpenClaw, please report it privately and do not open a public issue first.

Reporting

Please include:

  1. A clear title
  2. Affected version or commit SHA
  3. Impact
  4. Reproduction steps
  5. A minimal proof of concept when possible
  6. Suggested remediation if you have one

For private disclosure, contact the maintainers through the repository security contact path or open a private security advisory on GitHub if available.

Scope

This repository is an OpenClaw plugin, not the OpenClaw core runtime.

Please report issues here when they are specific to Proofrail itself, for example:

  • incorrect guardrail decisions inside the plugin
  • unsafe path handling or artifact writes inside the plugin
  • release artifact or packaging mistakes in this repository

If the issue is in OpenClaw core, the Gateway, or another host integration, report it to the repository where that code lives.

Coordinated Disclosure

Please allow reasonable time for triage and remediation before public disclosure.

There aren't any published security advisories