Skip to content

Commit 405c9e1

Browse files
author
Alex Tymchuk
authored
PMM-7 Create a security policy (#1328)
* Create SECURITY.md * Update SECURITY.md
1 parent 4949be5 commit 405c9e1

File tree

1 file changed

+29
-0
lines changed

1 file changed

+29
-0
lines changed

SECURITY.md

+29
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,29 @@
1+
# Security Policy
2+
3+
## Supported Versions
4+
5+
PMM versions starting from v2.0.0 are currently being supported.
6+
7+
| Version | Supported |
8+
| ------- | ------------------ |
9+
| 1.x.x | :x: |
10+
| 2.x.x | :white_check_mark: |
11+
12+
## Reporting a Vulnerability
13+
14+
Please report any vulnerabilities to our project in [Jira](https://jira.percona.com/projects/PMM/issues).
15+
16+
If the vulnerability is accepted and confirmed by our experts, you should normally expect us to deliver
17+
a version with a fix according to the timelines provided below:
18+
19+
For Percona created software (our engineers wrote the code):
20+
21+
- Low/Medium: 120 days
22+
- High: 90 days
23+
- Critical: ASAP but should not exceed 30 days
24+
25+
For Non-Percona created software (upstream provided/packaged) from the time the vendor releases a patch:
26+
27+
- Low/Medium: 2nd release from current version
28+
- High: Next release
29+
- Critical: Hotfix or no later than next release (our regular release cadence is once every month)

0 commit comments

Comments
 (0)