Michael Smith has submitted this change and it was merged. ( 
http://gerrit.cloudera.org:8080/24388 )

Change subject: IMPALA-15062: (Part 1) Add draft threat-model document
......................................................................

IMPALA-15062: (Part 1) Add draft threat-model document

Adds a draft project-level security threat-model document
(draft-THREAT-MODEL.md) at repo root, improving discoverability
for automated security scanners running against this repository.
The file follows the rubric format used by several other ASF
projects piloting security-model discoverability.

The "draft-" prefix signals this is a proposal for the PMC to
review, correct, or reject — not a finalised maintainer-blessed
model. Every claim carries a provenance tag (documented /
inferred / maintainer) so reviewers can see where each claim
originates; §14 collects open questions for the maintainers.

Change-Id: I4d9c22f3b95f0a542888e56eeb618423104cc9fd
Assisted-By: Claude Opus 4.7 (1M context) <[email protected]>
Reviewed-on: http://gerrit.cloudera.org:8080/24388
Reviewed-by: Michael Smith <[email protected]>
Reviewed-by: Zoltan Borok-Nagy <[email protected]>
Tested-by: Michael Smith <[email protected]>
---
A draft-THREAT-MODEL.md
1 file changed, 884 insertions(+), 0 deletions(-)

Approvals:
  Michael Smith: Looks good to me, but someone else must approve; Verified
  Zoltan Borok-Nagy: Looks good to me, approved

--
To view, visit http://gerrit.cloudera.org:8080/24388
To unsubscribe, visit http://gerrit.cloudera.org:8080/settings

Gerrit-Project: Impala-ASF
Gerrit-Branch: master
Gerrit-MessageType: merged
Gerrit-Change-Id: I4d9c22f3b95f0a542888e56eeb618423104cc9fd
Gerrit-Change-Number: 24388
Gerrit-PatchSet: 3
Gerrit-Owner: Michael Smith <[email protected]>
Gerrit-Reviewer: Impala Public Jenkins <[email protected]>
Gerrit-Reviewer: Joe McDonnell <[email protected]>
Gerrit-Reviewer: Michael Smith <[email protected]>
Gerrit-Reviewer: Quanlong Huang <[email protected]>
Gerrit-Reviewer: Zoltan Borok-Nagy <[email protected]>

Reply via email to