This is an automated email from the ASF dual-hosted git repository.
asf-gitbox-commits pushed a commit to branch geoapi-4.0
in repository https://gitbox.apache.org/repos/asf/sis.git
The following commit(s) were added to refs/heads/geoapi-4.0 by this push:
new d91cdff2bf Add a security model description.
d91cdff2bf is described below
commit d91cdff2bf1d20be768d8012cf8ec31086847c80
Author: Martin Desruisseaux <[email protected]>
AuthorDate: Tue Oct 6 13:50:42 2026 +0200
Add a security model description.
---
SECURITY.md | 40 ++++++++++++++++++++++++++++++++++++++++
1 file changed, 40 insertions(+)
diff --git a/SECURITY.md b/SECURITY.md
new file mode 100644
index 0000000000..8c0b34aaed
--- /dev/null
+++ b/SECURITY.md
@@ -0,0 +1,40 @@
+# Security Policy
+
+Apache SIS does not store credentials (user logins or passwords).
+Logging may contain URLs used for connection to databases and paths to data
files.
+Prerequisites for running Apache SIS safely are listed below.
+
+
+## Assumptions
+
+URLs for database connections should not contain passwords.
+Instead, `DataSource`, JNDI or web application containers
+[can be used](https://sis.apache.org/epsg.html#existing).
+
+If Apache SIS is connected to a MySQL or MariaDB database,
+the [SQL
mode](https://mariadb.com/docs/server/server-management/variables-and-modes/sql_mode)
+should contain `NO_BACKSLASH_ESCAPES`.
+No particular setting is needed for PostgreSQL, DuckDB, HSQL, H2 or Derby
databases.
+
+
+## Guarantees
+
+Some file formats can contain references (usually as URLs) to auxiliary files:
+
+* `PARAMETERFILE` elements in Well Known Text (WKT),
+* `xlink:href` attributes in Geographic Markup Language (GML),
+* Any coordinate operation working with a datum shift grid such as NADCON or
NTv2,
+* Landsat scenes with bands in separated TIFF images.
+
+By default, Apache SIS opens referenced files only if they are on the same host
+and in the same directory as, or in a sub-directory of, the referencing file.
+In some special cases such as datum shift grids, Apache SIS may also open files
+in the local directory identified by the `SIS_DATA` environment variable.
+There is no fallback if `SIS_DATA` is not defined.
+
+
+## Reporting a Vulnerability
+
+Apache SIS follows the [Apache Software Foundation security
process](https://www.apache.org/security/).
+Please report suspected vulnerabilities privately to `[email protected]`;
+do not open public GitHub issues or pull requests for security reports.