Dependency and Supply Chain Security Policy
Version 1.0 · Last updated: 22 February 2026
1. Introduction
2. Dependency Auditing
3. Version Pinning and Lock Files
4. Source Restrictions
5. License Compliance
6. Build Integrity and Attestation
gh attestation verify.7. Access Control and Code Review
8. Pre-Commit Security Hooks
9. Known Vulnerability Management
10. Incident Response
11. User Responsibility
12. Changes to This Policy
13. Contact
NautilusTrader™ is a product of Nautech Systems Pty Ltd (ABN 88 609 589 237). Nautech Systems provides algorithmic trading software only. We do not operate as a broker, dealer, or exchange, nor offer financial advisory services. Users are solely responsible for compliance with applicable laws and regulations. Subject to non-excludable consumer guarantees, we make no warranties and accept no liability for trading losses or regulatory violations arising from use of the software. Read full disclaimer.