Skip to content

Security: reclear-io/llmref

Security

SECURITY.md

Security policy

Scope

This repository is a static, public documentation registry. It contains versioned llms.txt, llms-full.txt, and meta.json artifacts — not executable code or credentials.

Reporting a vulnerability

If you discover a security issue related to this repository (for example: malicious content injected into registry artifacts, or a process gap that could compromise the registry), please report it responsibly.

Do not open a public issue for security-sensitive reports.

Instead:

  1. Email wale@team.reclear.io, or
  2. Open a private security advisory on GitHub.

Include:

  • Description of the issue
  • Steps to reproduce
  • Affected paths (e.g. registry/svelte/5.0.0/)
  • Impact assessment, if known

Response

Maintainers aim to acknowledge reports within 7 days and provide a remediation plan or status update shortly after.

Out of scope

  • Requests to add or update documentation snapshots (use Request docs instead)
  • Content accuracy issues in upstream documentation (use Report registry issue instead)
  • General usage questions

There aren't any published security advisories