Skip to content

Security: rwilliamspbg-ops/Sovereign_Map_Federated_Learning

.github/SECURITY.md

Security Policy: Sovereign Mohawk

πŸ›‘οΈ Our Commitment

Sovereign Mohawk is built on formal proofs and zero-trust hardware. However, no system is perfect. We take security reports seriously and prioritize fixing vulnerabilities that could compromise data sovereignty or model integrity.

πŸš€ Reporting a Vulnerability

Do not open a public GitHub issue for security vulnerabilities.

If you discover a bug that could lead to:

  • Raw data leakage (SGP-001 violation)
  • Proof-of-Contribution spoofing (zk-SNARK bypass)
  • Unauthorized model poisoning (BFT failure)

Please report it privately via:

πŸ“‹ Please include:

  1. A brief description of the vulnerability.
  2. Steps to reproduce (or a proof-of-concept script).
  3. The potential impact on the mesh.

🎁 Security Rewards

Verified security researchers who discover critical flaws will receive:

  • Major Audit Points: (250+ points toward the Incentive Tier).
  • Hall of Fame: Permanent recognition on the Project Dashboard.
  • Priority Access: Early access to the mainnet governance council.

Note: We follow a 90-day responsible disclosure window. We ask that you give us time to patch the vulnerability before sharing details publicly.

There aren’t any published security advisories