Skip to content

Commit b635144

Browse files
authored
Update SECURITY.md
1 parent 3026732 commit b635144

File tree

1 file changed

+8
-18
lines changed

1 file changed

+8
-18
lines changed

SECURITY.md

Lines changed: 8 additions & 18 deletions
Original file line numberDiff line numberDiff line change
@@ -1,27 +1,17 @@
11
# Security Guidelines for this Project
22

3-
## How the Jet Security team manages security for this project
3+
## How the Walmart Security team manages security for this project
4+
Walmart takes security seriously and wants to ensure that we maintain a secure environment for our customers and that we also provide secure solutions for the open source community. To help us achieve these goals, please note the following before using this software:
45

5-
Jet.com takes security seriously and wants to ensure that we maintain a secure environment for our customers and that we also provide secure solutions for the open source community. To help us achieve these goals, please note the following before using this software:
6-
7-
- Review the software license to understand Jet's obligations in terms of warranties and suitability for purpose
8-
- For any questions or concerns about security, you can reach out directly to Jet's security team at [email protected]
9-
- We request that you work with our security team and opt for [responsible disclosure](https://corporate.walmart.com/article/responsible-disclosure-policy) using the guidelines below
6+
- Review the software license to understand Walmarts's obligations in terms of warranties and suitability for purpose
7+
- Review our Responsible Disclosure Policy: https://corporate.walmart.com/article/responsible-disclosure-policy
8+
- Report any security concerns or questions using our reporting from on the bottom of our Responsible Disclosure Policy page: https://corporate.walmart.com/article/responsible-disclosure-policy
109
- We enforce SLAs on our security team and software engineers to remediate security bugs in a timely manner
11-
- All security related issues and pull requests you make should be tagged with "security" for easy identification
1210
- Please monitor this repository and update your environment in a timely manner as we release patches and updates
1311

14-
## Responsibly Disclosing Security Bugs to Jet
15-
16-
If you find a security bug in this repository, please work with Jet's security team following responsible disclosure principles and these guidelines:
12+
## Responsibly Disclosing Security Bugs to Walmart
13+
If you find a security bug in this repository, please work with Walmart's security team following responsible disclosure principles and these guidelines:
1714

18-
- Do not submit a normal issue or pull request in our public repository, instead report directly to [email protected] (If you would like to encrypt, please contact us for keys)
15+
- Do not submit a normal issue or pull request in our public repository, instead report directly on our intake form found at the bottom of of Responsible Disclosure Policy page: https://corporate.walmart.com/article/responsible-disclosure-policy
1916
- We will review your submission and may follow up for additional details
2017
- If you have a patch, we will review it and approve it privately; once approved for release you can submit it as a pull request publicly in our repos (we give credit where credit is due)
21-
- We will keep you informed during our investigation, feel free to check in for a status update
22-
- We will release the fix and publicly disclose the issue as soon as possible, but want to ensure we do proper due diligence before releasing
23-
- Please do not publicly blog or post about the security issue until after we have updated the public repo so that other downstream users have an opportunity to patch
24-
25-
## Contact / Misc.
26-
27-
If you have any questions, please reach out directly to the Jet.com Security team at [email protected]

0 commit comments

Comments
 (0)