-
Notifications
You must be signed in to change notification settings - Fork 3.7k
Add Reporting Vulnerabilities section to Security Policy #16962
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
Signed-off-by: tison <wander4096@gmail.com>
|
I hope that the information about the vulnerability handling process could also be added to SECURITY.md . Duplication of information is justified in this case. Hiding relevant information behind yet another click could result in information being missed. I'd suggest that we also add these sentences to SECURITY.md:
|
|
Oh, I see that @tisonkun already suggested inlining the information in #16919 (comment) . |
|
@lhotari I'm OK to duplicate the information but the current state is acceptable for me and I think it resolves the original issue. If you'd like to duplicate the information, you can submit a patch :) |
Fixes #16919
doc