这是indexloc提供的服务,不要输入任何密码
Skip to content
This repository was archived by the owner on Apr 20, 2025. It is now read-only.

Conversation

@diogoteles08
Copy link
Contributor

Closes #224

I've created the SECURITY.md file following a GitHub's template and considering that you'd request that users report vulnerabilities through the same email you pointed on the issue #161.

I'd also recommend that you check out the Github feature of the security advisory, which would allow users to confidentially report vulnerabilities directly on Github. They would be guided by a template and the reported issues would be accessible by any maintainers on Github. If you have interest, I'm available to help enable it and change the Security Policy to mention it.

Additionally, feel free to edit or suggest any changes to this document, it is supposed to reflect the amount of effort you and your team can offer to handle vulnerabilities.

I did this because some projects use a README section named  "Security" to disclose the same infos that we're disclosing on the Security Policy. After this change they'd be correctly redirected.
@sybrenstuvel sybrenstuvel merged commit 7991b2b into sybrenstuvel:main Nov 1, 2023
@sybrenstuvel
Copy link
Owner

Thanks! Much appreciated, really.

I'd also recommend that you check out the Github feature of the security advisory

That's certainly interesting. I appreciate any help on this project, and responsibly dealing with security issues is an important one.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

docs: Addition of a Security Policy

2 participants