Skip to content

docs: add security reporting guidance#147

Open
willchen96 wants to merge 1 commit into
mainfrom
add-security-reporting-guidance
Open

docs: add security reporting guidance#147
willchen96 wants to merge 1 commit into
mainfrom
add-security-reporting-guidance

Conversation

@willchen96
Copy link
Copy Markdown
Owner

Summary

Add security reporting guidance to the contributing guide.

Changes

  • Added a Security section to CONTRIBUTING.md.
  • Directs security vulnerability reports to GitHub private vulnerability reporting instead of public issues.
  • Notes that maintainers will aim to respond promptly and coordinate disclosure.

Why

Security reports should avoid public disclosure until they can be reviewed and remediated responsibly.

Testing

  • Not run; docs-only change.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant