Sources of Security Information
Security is a priority for the NixOS community. A variety of channels are used to coordinate development in this vein. Three of the main modes of communication about NixOS security are:
- The issues tagged “Security” on NixOS/nixpkgs
- The Matrix room
- The announcements on NixOS security Discourse
In addition to community-sourced developments, NixOS has a dedicated security team. If the above sources are not enough to answer your question, please reach out to the team.
Security Disclosures
To privately report a security issue with NixOS, Nix, and its ecosystem, please email a member of the NixOS Security Team and we will ensure the issue is handled.
-
Martin Weinelt
Email: hexa@darmstadt.ccc.de
GPG Fingerprint:F7D6 7CFB F2CA 32F1 641A 03DB 0D9F 7008 4786 0BC5
-
Robert Scott
Email: secure@humanleg.org.uk
GPG Fingerprint:8868 8AE4 8AE6 3195 BCF5 F732 3A7B 7B7A 2611 CE25
-
Thomas Gerbet
Email: thomas@gerbet.me
GPG Fingerprint:565E 4C95 E256 878A F684 6EB3 F1B9 7D51 AE83 1DC0