1
0
Fork 0
BastionGuard-Endpoint-Android/CODE_OF_CONDUCT.md
2026-08-30 18:40:16 +02:00

3.9 KiB

Code of Conduct

1. Purpose

This Code of Conduct establishes standards of behavior to ensure a professional, inclusive, and respectful environment for all contributors, maintainers, and users of the Bastionguard project.

The project is committed to maintaining a safe, collaborative, and high-integrity community focused on defensive cybersecurity and ethical development.


2. Scope

This Code of Conduct applies to all project spaces, including but not limited to:

  • Source code repositories
  • Issue trackers
  • Pull requests and code reviews
  • Discussion forums and chat platforms
  • Mailing lists and social media channels
  • Events and public communications related to the project

It applies to all participants, including maintainers, contributors, users, and external collaborators.


3. Core Values

Participants are expected to uphold the following principles:

  • Professionalism and integrity
  • Technical excellence and accountability
  • Respect for diverse perspectives
  • Transparency in decision-making
  • Responsible security practices
  • Ethical use of software

4. Expected Behavior

All participants must:

  • Communicate respectfully and constructively
  • Provide clear, factual, and technically sound feedback
  • Accept constructive criticism in good faith
  • Follow secure coding practices
  • Respect intellectual property and licensing terms
  • Report security issues responsibly
  • Avoid conflicts of interest
  • Act in the best interest of the project and its users

5. Unacceptable Behavior

The following behaviors are strictly prohibited:

  • Harassment, discrimination, or hate speech of any kind
  • Personal attacks, insults, or derogatory comments
  • Trolling, intimidation, or deliberate disruption
  • Publishing private or confidential information
  • Impersonation or misrepresentation
  • Promotion or facilitation of illegal activities
  • Development or promotion of offensive security tools intended for malicious use
  • Knowingly introducing vulnerabilities or backdoors
  • Circumventing security controls without authorization
  • Abuse of project infrastructure or resources

6. Security and Responsible Disclosure

Security vulnerabilities must be reported privately and responsibly.

Participants must not publicly disclose security flaws before maintainers have had reasonable time to assess and remediate them.

Unauthorized exploitation of vulnerabilities is prohibited.


7. Enforcement

Project maintainers are responsible for enforcing this Code of Conduct.

They may take any action deemed appropriate, including but not limited to:

  • Warning
  • Temporary suspension
  • Permanent ban
  • Rejection or removal of contributions
  • Revocation of contributor privileges
  • Legal action, where applicable

Enforcement decisions will be made in good faith and documented when appropriate.


8. Reporting Violations

Violations should be reported to the project maintainers through a designated private channel.

Reports must include:

  • Description of the incident
  • Relevant evidence
  • Dates and locations
  • Involved parties

All reports will be handled confidentially.

Retaliation against reporters is strictly prohibited.


9. Governance and Appeals

Participants may request a review of enforcement actions.

Appeals must be submitted in writing and will be evaluated by the core maintainer team.

Decisions following review are final.


All participants must comply with:

  • Applicable laws and regulations
  • Export control and sanctions laws
  • Data protection and privacy regulations
  • Project licensing terms (GPLv3)
  • Trademark usage guidelines

Non-compliance may result in immediate removal from the project.


11. Amendments

This Code of Conduct may be updated by project maintainers to reflect legal, technical, or community changes.

Updates will be publicly documented.


12. Acknowledgment

By participating in the Bastionguard project, you agree to abide by this Code of Conduct.