Tamandua's community exists to build useful security software and share reproducible security knowledge.
- Be direct, respectful, and technical.
- Keep claims tied to evidence, logs, code, or reproducible steps.
- Help move durable decisions into GitHub Issues or Discussions.
- Sanitize logs before sharing them.
- Use the security disclosure path for vulnerabilities or sensitive findings.
- Harassment, threats, hate speech, or personal attacks.
- Sharing private keys, credentials, tokens, dumps, or sensitive customer data.
- Posting live malware samples, exploit payloads, or instructions that create avoidable harm in public channels.
- Coordinating unauthorized access, abuse, or evasion against third-party systems.
- Repeatedly derailing technical discussions after moderator guidance.
Do not report vulnerabilities in Discord, public GitHub Issues, or public Discussions. Follow SECURITY.md.
Maintainers may remove content, move discussions to a safer venue, warn participants, or remove access from community channels when needed to keep the project safe and useful.