Skip to content

Add security-model discoverability (AGENTS.md -> SECURITY.md -> security model)#4880

Open
potiuk wants to merge 1 commit into
apache:trunkfrom
potiuk:security-model-discoverability
Open

Add security-model discoverability (AGENTS.md -> SECURITY.md -> security model)#4880
potiuk wants to merge 1 commit into
apache:trunkfrom
potiuk:security-model-discoverability

Conversation

@potiuk

@potiuk potiuk commented Jun 14, 2026

Copy link
Copy Markdown
Member

This is a proposal for the PMC to review, own, and merge — please correct, reject, or discuss as needed.

This wires the conventional AGENTS.md → SECURITY.md → security model discoverability chain so automated tooling (and contributors) can mechanically find the project's security model.

  • Adds a ## Security section to the existing AGENTS.md (no existing content removed).
  • Adds a new SECURITY.md.

Both point at the in-repo security model (doc/modules/cassandra/pages/reference/security-model.adoc). No model content is added or changed here.

Context: the ASF Security team is preparing the Cassandra repositories for an automated agentic security scan we're piloting; such scans look for the model along this chain and run far less noisily when it resolves. The Security team has been in touch separately on the PMC's private list. This addresses the discoverability gap noted there (the model landed on trunk, but the AGENTS.md → SECURITY.md wiring didn't come with it).

…ity model)

Wires the conventional AGENTS.md -> SECURITY.md -> security model chain so automated tooling can mechanically discover the project's security model. No model content is changed.

Generated-by: Claude Opus 4.8 (1M context)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant