Security policy #255
Replies: 7 comments
-
Use https://github.com/sourcenetwork/defradb/security/ by way of having 1) having a SECURITY.md and 2) a process of reporting security advisories there. Detail supported versions. Source will provide email support for the disclosure of vulnerabilities.
Reports audits, perhaps in Consider operating a bug bounty program. Document our process, including disclosure process. |
Beta Was this translation helpful? Give feedback.
-
I suggest this issue requires discussion from @addobot and @jsimnz . |
Beta Was this translation helpful? Give feedback.
-
https://docs.github.com/en/code-security/getting-started/github-security-features |
Beta Was this translation helpful? Give feedback.
-
Specifying a threat model |
Beta Was this translation helpful? Give feedback.
-
Consider the inclusion and maintenance of a security policy.
Examples:
Beta Was this translation helpful? Give feedback.
All reactions