Skip to content

Commit 8d3e77c

Browse files
committed
Add missing files
1 parent 7905d9d commit 8d3e77c

2 files changed

Lines changed: 13 additions & 3 deletions

File tree

CODEOWNERS

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
* @joel-rieke @meghan-bailey @mkrty @JoshuaAtTrimble

SECURITY.md

Lines changed: 12 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,17 @@
11
# Security Policy
22

33
## Reporting a Vulnerability
4-
Security issues and bugs should be reported privately, via email, to [cybersecurity@trimble.com](mailto:cybersecurity@trimble.com).
54

6-
If you do not receive a response within 24 hours, please follow up via email to ensure we received your original message.
5+
Report security vulnerabilities by emailing the Trimble Cybersecurity team at:
76

8-
Please do not open issues for anything you think might have a security implication.
7+
cybersecurity@trimble.com
8+
9+
Report security vulnerabilities in third-party modules to the person or team maintaining the module.
10+
11+
## Disclosure Policy
12+
13+
When the security team receives a security bug report, they will assign it to a primary handler. This person will coordinate the fix and release process, involving the following steps:
14+
15+
- Confirm the problem and determine the affected versions.
16+
- Audit code to find any potential similar problems.
17+
- Prepare fixes for all releases still under maintenance. These fixes will be released as fast as possible.

0 commit comments

Comments
 (0)