Skip to content

Set up a security policy for future vulnerability reporting #1122

Description

@pllim

Perhaps #1119 could have gone through a more private route of security reporting. This can be accomplished by setting up a GitHub security policy. Private reporting is important if the risk/impact is high and you do not want to advertise it before publishing a patch.

https://docs.github.com/en/code-security/getting-started/adding-a-security-policy-to-your-repository

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

      Milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions