Skip to content

Commit 97345a5

Browse files
Merge pull request #151 from IviFoundation/users/abarreto/security
SSDF page (security.md)
2 parents ca007f4 + f98e507 commit 97345a5

File tree

1 file changed

+41
-0
lines changed

1 file changed

+41
-0
lines changed
Lines changed: 41 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,41 @@
1+
---
2+
layout: default
3+
parent: About
4+
title: Security Reporting
5+
nav_order: 7
6+
---
7+
8+
# Reporting a Security Issue
9+
10+
The IVI Foundation is committed to providing secure software to its users. We take security seriously and appreciate the efforts of users and security researchers to help us improve the security of our software.
11+
12+
We encourage the community to report any vulnerabilities they may discover and participate in their resolution.
13+
14+
## Responsible Disclosure
15+
16+
To report security issues, contact us at:
17+
18+
19+
20+
Please include the following information in your report:
21+
22+
1. A clear description of the issue and steps to reproduce it
23+
2. Name and version of the software with the security issue
24+
3. Name and version of the operating system in use
25+
4. Name and version of any security tools used to discover this issue (if any)
26+
27+
Your report is private and we will not disclose your identity without consent.
28+
29+
When we receive a report, we shall:
30+
31+
1. Confirm the receipt of the report; typically within a business day
32+
2. Assign a person to investigate the issue
33+
3. Provide an estimated time frame for the resolution of the issue (typically within 30 days)
34+
4. Keep you informed on the progress of the investigation
35+
5. Work with you to coordinate releasing updated components that minimizes the risk to our users
36+
37+
If you desire, we will acknowledge your role in finding and resolving the issue in any public discloure.
38+
39+
## Getting Help
40+
41+
For security-related inquiries, please email us at <[email protected]>.

0 commit comments

Comments
 (0)