Repository navigation
docs: Add SECURITY.md - #934
Conversation
TRI-1935
|
TRI-1935
|
|
||
| ## Security Architecture and Context | ||
|
|
||
| **Project:** Triton Python, C++ and Java client libraries, and GRPC-generated client examples for go, java and scala. |
There was a problem hiding this comment.
Project scope omits clients. The project description leaves out the Rust client library and JavaScript generated-client example, although both remain in this repository. Readers assessing security coverage or reporting a vulnerability in either component may be unsure whether this policy applies.
Note: If this suggestion doesn't match your team's coding style, reply to this and let me know. I'll remember it for next time!
| * Models, configuration and other inputs come from trusted sources. | ||
| * Dependencies and the build environment are kept up to date and obtained from trusted sources. | ||
| * Operators protect secrets, certificates and credentials, and restrict access to logs and metrics. | ||
| * Host operating system, driver and hardware security are the operator's responsibility. |
There was a problem hiding this comment.
Local shared-memory boundary omitted. General host-security language replaces the warning that shared-memory access depends on local permissions and handle secrecy, and that regions require cleanup. A gateway does not protect this local boundary. Operators using system or CUDA shared memory may overlook access to tensor data by other local processes. How this was verified: The C++ client creates and maps POSIX shared-memory regions, exposes a separate unlink operation, and the CUDA client exports IPC handles.
What does the PR do?
SECURITY.md, which this repository did not have. Flagged by an AIVO asset review.NVIDIA/NeMo,cuda-pythonandMegatron-LM. Text is NVIDIA-authored, unmodified except the platform-neutral "GitHub/GitLab" wording fromcuda-python.Checklist
<commit_type>: <Title>Commit Type:
Check the conventional commit type
box here and add the label to the github PR.
Related PRs:
Where should the reviewer start?
SECURITY.md— compare againstNVIDIA/NeMo/SECURITY.mdfor the canonical wording.Test plan:
Documentation only; no code paths affected.
CI Pipeline ID:
Caveats:
NVIDIA/NeMosays "through GitHub",NVIDIA/cuda-pythonsays "through GitHub/GitLab". This PR uses the latter because Triton repositories exist on both GitHub and internal GitLab.Background
An AIVO asset review (securityportal.nvidia.com/aivo/assets) flagged Triton repositories with no SECURITY.md. Rather than authoring per-repository security documentation, every repository adopts NVIDIA's current standard template so the policy is identical everywhere and carries no repository-specific claims to maintain.
Related Issues: (use one of the action keywords Closes / Fixes / Resolves / Relates to)