Security

We take the security of Mikrom and its workloads seriously.

Reporting a vulnerability

Email security@spluca.org with details and reproduction steps. Please do not open a public issue. We acknowledge reports within 2 business days and aim to provide an initial assessment within 7 business days.

Platform practices

  • Workloads run in lightweight microVMs.
  • Release decisions, runtime execution, and ingress routing are separated.
  • Deployment provenance connects releases to source and promotion history.
  • Ceph snapshots and backups keep recovery paths explicit.

For personal data, see the Privacy Policy.

Last updated: 2026-08-28