Skip to content

Add draft security threat model (THREAT_MODEL.md + SECURITY.md + AGENTS.md)#3052

Open
potiuk wants to merge 1 commit into
apache:masterfrom
potiuk:asf-security/threat-model-2026-06-18
Open

Add draft security threat model (THREAT_MODEL.md + SECURITY.md + AGENTS.md)#3052
potiuk wants to merge 1 commit into
apache:masterfrom
potiuk:asf-security/threat-model-2026-06-18

Conversation

@potiuk

@potiuk potiuk commented Jun 19, 2026

Copy link
Copy Markdown
Member

This is a proposal for the Drill PMC to review — please correct, reject, or discuss as needed. Every claim is provenance-tagged ((documented) / (inferred)); the (inferred) ones are the team's draft reasoning for you to confirm or strike, collected as "Open questions for the maintainers" (§14, three waves).

This adds a draft THREAT_MODEL.md plus the AGENTS.md -> SECURITY.md -> THREAT_MODEL.md discoverability wiring for Apache Drill, drafted at the PMC's request (Charles Givre, path 3) using the threat-model-producer rubric.

What's needed from the PMC: walk the §14 questions (a one-line confirm / correct / strike per question is plenty). We fold your answers in and the (inferred) tags become (maintainer). Nothing here is a requirement — the scan just runs with less noise when the model is filled in.

Context: this is pre-flight for an automated agentic security scan the ASF Security team is piloting; discoverability (AGENTS.md -> SECURITY.md -> the model) is the one hard gate. Questions / pushback welcome.

Generated-by: Claude Opus 4.8 (1M context)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant