Contributor Covenant Code of Conduct

April 28, 2026 ยท View on GitHub

Our Pledge

We as members, contributors, and leaders pledge to make participation in the DeepZero community a harassment-free experience for everyone, regardless of age, body size, visible or invisible disability, ethnicity, sex characteristics, gender identity and expression, level of experience, education, socio-economic status, nationality, personal appearance, race, caste, color, religion, or sexual identity and orientation.

We pledge to act and interact in ways that contribute to an open, welcoming, diverse, inclusive, and healthy community.

Our Standards

Examples of behavior that contributes to a positive environment:

  • Using welcoming and inclusive language
  • Being respectful of differing viewpoints and experiences
  • Giving and gracefully accepting constructive feedback
  • Accepting responsibility and apologizing to those affected by our mistakes, and learning from the experience
  • Focusing on what is best not just for us as individuals, but for the overall community

Examples of unacceptable behavior:

  • The use of sexualized language or imagery, and sexual attention or advances of any kind
  • Trolling, insulting or derogatory comments, and personal or political attacks
  • Public or private harassment
  • Publishing others' private information, such as a physical or email address, without their explicit permission
  • Other conduct which could reasonably be considered inappropriate in a professional setting

Responsible Security Research

DeepZero is a vulnerability research pipeline engine. As a community built around security tooling, we hold ourselves to an additional standard:

  • Use DeepZero for defensive research only. Contributions and discussions must focus on improving security posture, not enabling attacks.
  • Follow coordinated disclosure. If your work with DeepZero uncovers a real-world vulnerability, report it to the affected vendor before any public disclosure. See our Security Policy for guidance.
  • Never share live exploits or weaponized payloads in issues, discussions, or pull requests.
  • Respect data boundaries. Do not include proprietary binaries, copyrighted corpora, or sensitive data in contributions.

Enforcement Responsibilities

Project maintainers are responsible for clarifying and enforcing our standards of acceptable behavior and will take appropriate and fair corrective action in response to any behavior that they deem inappropriate, threatening, offensive, or harmful.

Project maintainers have the right and responsibility to remove, edit, or reject comments, commits, code, wiki edits, issues, and other contributions that are not aligned with this Code of Conduct, and will communicate reasons for moderation decisions when appropriate.

Scope

This Code of Conduct applies within all community spaces, including the GitHub repository, issue tracker, pull requests, discussions, and any other channels associated with DeepZero. It also applies when an individual is officially representing the community in public spaces.

Enforcement

Instances of abusive, harassing, or otherwise unacceptable behavior may be reported to the project maintainers via:

  • GitHub: Open a private report through the repository's security advisories
  • Email: Contact a maintainer directly through the email listed on their GitHub profile

All complaints will be reviewed and investigated promptly and fairly. All maintainers are obligated to respect the privacy and security of the reporter.

Enforcement Guidelines

1. Warning

For first-time or minor violations, maintainers will reach out privately to explain what was inappropriate and why. The expectation is that the behavior stops.

2. Block

For repeated or severe violations, the individual will be blocked from the repository, preventing further issues, comments, and pull requests.

Attribution

This Code of Conduct is adapted from the Contributor Covenant, version 2.1, available at https://www.contributor-covenant.org/version/2/1/code_of_conduct.html.