opseclint 1.2.0

Detection-coverage analyzer for Linux/auditd, Windows/Sysmon, and macOS/Endpoint Security: resolve shell/command actions to ATT&CK techniques, the telemetry they emit, and the detections that would fire.
# Security Policy

## Supported versions

opseclint is pre-1.0. Security fixes land on the latest release and `main`.

## Reporting a vulnerability

Please **do not** open a public issue for security problems.

Use GitHub's private vulnerability reporting: on this repository, open the
**Security** tab → **Report a vulnerability**. That creates a private advisory
visible only to the maintainer.

Please include:

- the affected version or commit,
- a description of the issue,
- steps to reproduce, and
- the impact you foresee.

You can expect an initial response within a few days.

## Scope note

opseclint performs **static analysis** and never executes the commands, scripts,
or playbooks it analyzes. Its knowledge base and Sigma references are
informational and should be validated against your own detection stack before
you rely on them.