Please see the llm-d Security Policy in the main repository for vulnerability reporting and disclosure information.
Container images published by this repository carry a signed SLSA provenance attestation and an SPDX software bill of materials. See Verifying Published Artifacts.