Skip to content

Commit bebd164

Browse files
Create SECURITY.md (#233)
Signed-off-by: Mathieu Benoit <[email protected]>
1 parent 4514538 commit bebd164

File tree

1 file changed

+15
-0
lines changed

1 file changed

+15
-0
lines changed

SECURITY.md

+15
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,15 @@
1+
# Security Policy
2+
3+
Thank you for taking the time to report a security vulnerability. We would like to investigate every report thoroughly.
4+
5+
## Reporting a Vulnerability
6+
7+
_Note: Please do not open a public issue describing the vulnerability._
8+
9+
To report a security vulnerability, please navigate to the `Security` tab of the associated repository, and click on the [`Report a vulnerability`](https://github.com/score-spec/score-compose/security/advisories/new) button.
10+
11+
Then, fill in all the details of the vulnerability in English and click on `Submit report`. This submission will only be viewable to repository maintainers and will help us triage your report more quickly.
12+
13+
## Evaluation and Response
14+
15+
Response times could be affected by weekends, holidays, breaks or time zone differences. That said, the maintainers team endeavours to evaluate your report and reply as soon as possible, ideally within 10 working days.

0 commit comments

Comments
 (0)