RustShield Modbus Gateway is a laboratory PoC for local Modbus TCP validation. It is not production OT security software, not certified, and not validated for real PLCs, plants, safety systems, or high-availability operation.
Do not deploy this repository in critical infrastructure, production OT networks, or systems where unsafe operation could harm people, equipment, or the environment without independent engineering review, safety validation, network controls, and applicable certification work.
Only the current main branch and explicitly published lab-preview releases are
in scope for security reports. Historical commits, generated evidence snapshots,
and local demo scripts are best-effort only.
Please report suspected vulnerabilities privately by email:
rustshield.security@proton.me
Include:
- affected commit, tag, or release;
- minimal reproduction steps;
- expected and observed behavior;
- whether the issue affects parser behavior, policy decisions, observability, configuration, or evidence generation;
- any logs or captures with payloads and secrets removed.
This project favors transparent lab evidence and conservative claims. Confirmed issues that affect parser safety, fail-safe policy behavior, payload redaction, or local-only exposure boundaries should be documented before broader promotion of the PoC.