Security

Do not connect this development release to an untrusted network. It has no secure-boot verification, cryptographic package verification, network authentication, privilege-separated services, complete multi-user access control, encrypted storage, or supported incident-response process.

Target security baseline

The first supported release is intended to require a signature-verified UEFI boot chain, signed service and update bundles, SSH public-key authentication with defined roles, append-only audit records, and rollback-safe A/B updates. TPM 2.0 is planned as an optional hardware root of trust; systems without it requires local unlock for encrypted data.

Reporting

Until Foundry Tech Inc. publishes a dedicated security contact and disclosure policy, please do not report vulnerabilities in public issue trackers. Use the company's established private security channel with a reproducible proof of concept, affected revision, and impact assessment.