Security Policy

Reporting Issues

The RoboCata Standard is a specification document, not executable software. However, if you identify issues that could affect implementations — such as ambiguities that could lead to security vulnerabilities, or errors in the schema that could cause data integrity problems — please report them.

How to Report

Please include:

  1. A description of the issue
  2. Which part of the standard is affected (section, field, or codelist)
  3. Potential impact on implementations
  4. Suggested fix (if any)

Response

We will acknowledge receipt within 5 business days and provide an assessment within 30 days.

Scope

This policy covers the RoboCata Standard specification, JSON Schema, and codelist files in this repository. It does not cover the RoboCata catalog platform at robocata.com, which is a separate implementation.