Skip to content

Commit 903c38c

Browse files
authored
Merge pull request #259 from canonical/IAM-1084
Add SECURITY.md
2 parents 6d3b34b + c98fb0d commit 903c38c

2 files changed

Lines changed: 9 additions & 4 deletions

File tree

README.md

Lines changed: 3 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -66,11 +66,10 @@ The image used by this charm is hosted
6666
on [GitHub container registry](ghcr.io/canonical/identity-platform-login-ui) and
6767
maintained by Canonical Identity Team.
6868

69-
### Security
69+
## Security
7070

71-
Security issues in IAM stack can be reported
72-
through [LaunchPad](https://wiki.ubuntu.com/DebuggingSecurity#How%20to%20File).
73-
Please do not file GitHub issues about security issues.
71+
Please see [SECURITY.md](https://github.com/canonical/identity-platform-login-ui-operator/blob/main/SECURITY.md)
72+
for guidelines on reporting security issues.
7473

7574
## Contributing
7675

SECURITY.md

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,6 @@
1+
# Security policy
2+
3+
## Reporting a vulnerability
4+
To report a security issue, file a [Private Security Report](https://github.com/canonical/identity-platform-login-ui-operator/security/advisories/new) with a description of the issue, the steps you took to create the issue, affected versions, and, if known, mitigations for the issue.
5+
6+
The [Ubuntu Security disclosure and embargo policy](https://ubuntu.com/security/disclosure-policy) contains more information about what you can expect when you contact us and what we expect from you.

0 commit comments

Comments
 (0)