KNF / public recordKnolo / Security
Security center

Security is part of the specification.

Trustworthy infrastructure needs a clear path for disclosure, signed releases, supported versions, and coordinated remediation.

Security center

Security is not a page at the end of the product. It is part of the release contract.

This center is the public index for vulnerability disclosure, advisories, supported versions, release keys, and verification material.

Do not send sensitive security details through an unverified channel. The disclosure path will be published before reports are solicited at this domain.

Disclose

Give researchers a safe path.

Reports should have a clear scope, channel, expected contents, and coordinated timeline.

Sign

Connect artifacts to identity.

Release keys and digests make it possible to check what was published.

Respond

Remediation needs a record.

Advisories and supported versions make changes legible to users.

IndexStatus / scope
DisclosureProcess prepared
AdvisoriesNone published
VersionsPolicy forthcoming
KeysNot yet published
+
No public advisories

There are currently no published security advisories.

+
No release keys published

Public fingerprints will appear before signed release verification is enabled.