Skip to content

Security: roezi/ob-engine-community

Security

SECURITY.md

Security Policy

OB Engine Community is designed for WordPress automation workflows that may involve database writes, REST endpoints, file handling, and secret-backed integrations.

Reporting a vulnerability

Please do not open a public GitHub issue for security reports.

Instead, contact the maintainer privately through the contact method listed in the repository profile or project documentation.

Security focus

The project prioritizes:

  • capability checks
  • nonce validation
  • secret masking
  • SQL safety
  • safe file handling
  • webhook validation
  • audit logging
  • dry-run workflows
  • draft/review gates
  • production write protection

Supported versions

The community version is currently early-stage. Security fixes will target the latest public version.

There aren't any published security advisories