This impacts the the effective triage of inbound vulnerability reports by Apache Security, so I will handle this one with lazy consensus and commit it 72 hours from now, regenerating the website unless there are objections.
On Mon, Jul 27, 2026 at 3:02 PM Andrew Purtell <[email protected]> wrote: > I have attempted to describe the Phoenix security model for use by Apache > Security and others, including ourselves, in triaging vulnerability > reports. Please have a look at https://github.com/apache/phoenix/pull/2583 > > -- > Best regards, > Andrew > >
