Skip to content

Security: Cartesian-School/guardbsd

Security

SECURITY.md

Security Policy

GuardBSD – Proprietary Closed-Source Software

Cartesian School (represented by Siergej Sobolewski) takes the security of GuardBSD® and our customers extremely seriously.

This repository is maintained solely for name and trademark protection and does not contain any active source code. Security-related reports for the current commercial version of GuardBSD must be submitted through official private channels.

Reporting a Vulnerability

If you believe you have discovered a security vulnerability in GuardBSD® (in any commercial or evaluation version), please report it responsibly and privately. Do not disclose the issue publicly until it has been resolved.

Preferred reporting method:

Please include the following information in your report:

  • Description of the vulnerability and its potential impact
  • Affected versions of GuardBSD
  • Steps to reproduce the issue
  • Any proposed mitigation or proof-of-concept (optional)

PGP Key for Encrypted Communication

We strongly recommend encrypting sensitive reports. Our current security team PGP key is available at: https://guardbsd.org/pgp-security.txt

Fingerprint: A1B2 C3D4 E5F6 7890 1234 5678 9ABC DEF0 1234 5678

Response Timeline

We aim to:

  • Acknowledge receipt of your report within 48 hours
  • Provide a detailed assessment and planned remediation timeline within 7 business days
  • Keep you informed throughout the process

Supported Versions

Only officially licensed commercial versions of GuardBSD are covered by this security policy.
Evaluation, community, or historical builds are not supported for security updates.

Disclosure Policy

We follow responsible disclosure practices:

  • We will coordinate with you on the timeline of public disclosure.
  • We will credit you (unless you request anonymity) after the vulnerability is fixed and a patch is released.
  • Public disclosure without prior coordination with Cartesian School is not permitted.

Legal Note

GuardBSD is proprietary software. Unauthorized access, reverse engineering, or exploitation attempts are strictly prohibited and may result in legal action.


© 2025–2026 Cartesian School Siergej Sobolewski. All Rights Reserved.

There aren’t any published security advisories