Skip to content

Document and rehearse abuse response and destination opt-out handling #19

Description

@ctfbruce

Problem

Technical destination limits need a human-operable reporting and incident process for disputed traffic, compromised credentials or an opt-out request.

Proposed change

Define report intake, accountable target verification/review, access to evidence, escalation and response runbooks, using the implemented policy propagation and credential controls.

Acceptance criteria

  • A local drill follows an opt-out request through approval, enforcement acknowledgement and verification that active traffic stops.
  • A credential-compromise drill identifies revocation and recovery actions and preserves an appropriate incident record.
  • An actual accountable reporting contact and access policy are agreed; no external host is contacted during the drill.

Current evidence

unimplemented requirement. Backlog classification is based on source inspection; this issue does not claim a new runtime reproduction.

Dependencies

  • #74 — Authenticate destination opt-outs and propagate revocation to active work
  • #90 — Enroll executor identities and bind them to both control channels

Validation must use owned local fixtures on supported Linux environments. Record the implementing merge request and relevant test results before closing this issue.


Imported from GitLab issue 18. Originally opened 2026-09-10. Historical GitLab links may require access to the original project.

Activity

  1. added this to the Project maintenance milestone on Sep 24, 2026
  2. added
    documentationImprovements or additions to documentation
    P1Core supported-product work to prioritize after the working local alpha.
    Project maintenanceMaintainer responsibilities, support policy, contribution documentation and publication preparation.
    Source reviewedCurrent source evidence checked; no new runtime reproduction claimed by backlog creation.
    on Sep 24, 2026
  3. vincent10400094 commented on Sep 25, 2026

    @vincent10400094
    Member

    Progress: #186, merged into dev via #228 (e4a621f), adds a reporting route and a destination opt-out procedure ("Abuse reports and destination opt-out" in docs/SECURITY.md). Still open: rehearsing the procedure, a credential-compromise runbook and drill, and an accountable contact beyond public issues.

  4. ctfbruce commented on Oct 7, 2026

    @ctfbruce
    CollaboratorAuthor

    PR #408 merged as aa3ac6d. The abuse-response procedure now accompanies real authenticated local opt-out and credential-revocation drills. Controlled TCP/UDP receivers stopped after acknowledged policy delivery; lost delivery recovered while probes remained healthy. The revoked credential returned 401 and the replacement returned 200. The fixture distinguishes stopped traffic, unavailable delivery and retained evidence.

    Candidate CI and merged-main CI passed. These are owned local fixtures, not a production abuse incident or an external contact rehearsal. The issue stays open for the accountable reporting contact and agreement on incident evidence access and retention.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    P1Core supported-product work to prioritize after the working local alpha.Project maintenanceMaintainer responsibilities, support policy, contribution documentation and publication preparation.Source reviewedCurrent source evidence checked; no new runtime reproduction claimed by backlog creation.documentationImprovements or additions to documentation

    Type

    No type

    Projects

    No projects

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions