Skip to content

docs: add Iceberg security model#2524

Merged
sungwy merged 1 commit into
apache:mainfrom
sungwy:security-model
May 28, 2026
Merged

docs: add Iceberg security model#2524
sungwy merged 1 commit into
apache:mainfrom
sungwy:security-model

Conversation

@sungwy
Copy link
Copy Markdown
Contributor

@sungwy sungwy commented May 28, 2026

Similar to: apache/iceberg#16538

This PR publishes a security model for Iceberg and adds a detailed threat model referenced from AGENTS.md so there is a clear project reference for how Iceberg distinguishes security issues from other bugs.

The goal is to make Iceberg’s security boundaries explicit for both human triage and automated scanning, and to reduce false positives in future security reporting.

This PR was drafted with AI assistance and then manually reviewed and edited to reflect the project’s current approach to security roles, trust boundaries, and the handling of recent security reports.

Copilot AI review requested due to automatic review settings May 28, 2026 18:39
Copy link
Copy Markdown

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot encountered an error and was unable to review this pull request. You can try again by re-requesting a review.

@sungwy sungwy merged commit 9673e14 into apache:main May 28, 2026
20 checks passed
@sungwy sungwy deleted the security-model branch May 28, 2026 19:55
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants