Skip to content

Security: klever-engineering/ke-session-mining

SECURITY.md

Security policy

This repository is intended for public, synthetic, or explicitly reviewed session examples. Do not add private coding-agent transcripts, credentials, customer information, internal domains, local machine paths, or deployment configuration.

Before any public promotion:

  • scan the working tree and Git history for secrets and private identifiers;
  • inspect fixtures and generated reports, not only source code;
  • verify that redaction does not leave recoverable sensitive context;
  • use synthetic fixtures when the original session is not publishable;
  • review dependencies, packaging, and CI workflows;
  • run the parser with an output directory outside the source tree.

If a sensitive issue is found, do not open a public issue. Contact the repository maintainer privately and include the affected file and commit only through an approved private channel.

There aren't any published security advisories