mirror of
https://github.com/416rehman/DeepZero
synced 2026-08-09 11:54:39 +00:00
* docs: add code of conduct, contributing guide, issue and PR templates * revert: restore README.md to original --------- Co-authored-by: Rehman Ahmadzai <hayaturehman.ahmadzai@infosecglobal.com>
105 lines
4.2 KiB
Markdown
105 lines
4.2 KiB
Markdown
# Contributor Covenant Code of Conduct
|
|
|
|
## Our Pledge
|
|
|
|
We as members, contributors, and leaders pledge to make participation in the
|
|
DeepZero community a harassment-free experience for everyone, regardless of age,
|
|
body size, visible or invisible disability, ethnicity, sex characteristics,
|
|
gender identity and expression, level of experience, education, socio-economic
|
|
status, nationality, personal appearance, race, caste, color, religion, or
|
|
sexual identity and orientation.
|
|
|
|
We pledge to act and interact in ways that contribute to an open, welcoming,
|
|
diverse, inclusive, and healthy community.
|
|
|
|
## Our Standards
|
|
|
|
Examples of behavior that contributes to a positive environment:
|
|
|
|
- Using welcoming and inclusive language
|
|
- Being respectful of differing viewpoints and experiences
|
|
- Giving and gracefully accepting constructive feedback
|
|
- Accepting responsibility and apologizing to those affected by our mistakes,
|
|
and learning from the experience
|
|
- Focusing on what is best not just for us as individuals, but for the overall
|
|
community
|
|
|
|
Examples of unacceptable behavior:
|
|
|
|
- The use of sexualized language or imagery, and sexual attention or advances of
|
|
any kind
|
|
- Trolling, insulting or derogatory comments, and personal or political attacks
|
|
- Public or private harassment
|
|
- Publishing others' private information, such as a physical or email address,
|
|
without their explicit permission
|
|
- Other conduct which could reasonably be considered inappropriate in a
|
|
professional setting
|
|
|
|
## Responsible Security Research
|
|
|
|
DeepZero is a vulnerability research pipeline engine. As a community built
|
|
around security tooling, we hold ourselves to an additional standard:
|
|
|
|
- **Use DeepZero for defensive research only.** Contributions and discussions
|
|
must focus on improving security posture, not enabling attacks.
|
|
- **Follow coordinated disclosure.** If your work with DeepZero uncovers a
|
|
real-world vulnerability, report it to the affected vendor before any public
|
|
disclosure. See our [Security Policy](SECURITY.md) for guidance.
|
|
- **Never share live exploits** or weaponized payloads in issues, discussions,
|
|
or pull requests.
|
|
- **Respect data boundaries.** Do not include proprietary binaries, copyrighted
|
|
corpora, or sensitive data in contributions.
|
|
|
|
## Enforcement Responsibilities
|
|
|
|
Project maintainers are responsible for clarifying and enforcing our standards
|
|
of acceptable behavior and will take appropriate and fair corrective action in
|
|
response to any behavior that they deem inappropriate, threatening, offensive,
|
|
or harmful.
|
|
|
|
Project maintainers have the right and responsibility to remove, edit, or reject
|
|
comments, commits, code, wiki edits, issues, and other contributions that are
|
|
not aligned with this Code of Conduct, and will communicate reasons for
|
|
moderation decisions when appropriate.
|
|
|
|
## Scope
|
|
|
|
This Code of Conduct applies within all community spaces, including the GitHub
|
|
repository, issue tracker, pull requests, discussions, and any other channels
|
|
associated with DeepZero. It also applies when an individual is officially
|
|
representing the community in public spaces.
|
|
|
|
## Enforcement
|
|
|
|
Instances of abusive, harassing, or otherwise unacceptable behavior may be
|
|
reported to the project maintainers via:
|
|
|
|
- **GitHub**: Open a private report through the repository's security advisories
|
|
- **Email**: Contact a maintainer directly through the email listed on their
|
|
GitHub profile
|
|
|
|
All complaints will be reviewed and investigated promptly and fairly. All
|
|
maintainers are obligated to respect the privacy and security of the reporter.
|
|
|
|
## Enforcement Guidelines
|
|
|
|
### 1. Warning
|
|
|
|
For first-time or minor violations, maintainers will reach out privately to
|
|
explain what was inappropriate and why. The expectation is that the behavior
|
|
stops.
|
|
|
|
### 2. Block
|
|
|
|
For repeated or severe violations, the individual will be blocked from the
|
|
repository, preventing further issues, comments, and pull requests.
|
|
|
|
## Attribution
|
|
|
|
This Code of Conduct is adapted from the [Contributor Covenant][homepage],
|
|
version 2.1, available at
|
|
[https://www.contributor-covenant.org/version/2/1/code_of_conduct.html][v2.1].
|
|
|
|
[homepage]: https://www.contributor-covenant.org
|
|
[v2.1]: https://www.contributor-covenant.org/version/2/1/code_of_conduct.html
|