Commit 03adb51
Clarify intended use and vulnerability handling policy
The README and the rdoc discouraged production use but did not say how reports are handled. State that WEBrick is intended for testing and local development and is not intended to receive traffic from untrusted sources, and that while security issues are fixed in the open through the ordinary bug fixing process, the developers do not operate a vulnerability handling process and do not request CVE IDs.
ruby#199
Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>1 parent 25b0e92 commit 03adb51
2 files changed
Lines changed: 13 additions & 3 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
10 | 10 | | |
11 | 11 | | |
12 | 12 | | |
13 | | - | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
14 | 16 | | |
15 | 17 | | |
16 | 18 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
17 | 17 | | |
18 | 18 | | |
19 | 19 | | |
20 | | - | |
21 | | - | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
22 | 30 | | |
23 | 31 | | |
24 | 32 | | |
| |||
0 commit comments