Skip to content

Security: daichunghy/quant-research

Security

.github/SECURITY.md

Security Policy

Supported versions

The 0.1.x alpha line is supported for contract, provenance, recode-integrity, and emitter-security reports. The project does not claim security or validity for downstream statistical software or data systems.

Reporting

Do not open a public issue for a suspected credential leak, path traversal, or recode-integrity bug that could silently flip reverse-keyed items. Use GitHub private vulnerability reporting. If that form is unavailable, contact @daichunghy through a private GitHub channel.

Do not include respondent-level survey data, student records, or production tokens in a report.

Security boundary

Compilers are deterministic and do not call model providers or statistical engines. A valid receipt does not prove ethical approval, consent, or a correctly specified SEM.

There aren't any published security advisories