Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Content for SECURITY.md #9

Open
ockersp opened this issue Jun 27, 2019 · 1 comment
Open

Content for SECURITY.md #9

ockersp opened this issue Jun 27, 2019 · 1 comment

Comments

@ockersp
Copy link

ockersp commented Jun 27, 2019

Possible content to use in a generic SECURITY.md policy file:

Reporting Security Issues

Adobe values the contributions of the security research community, and we look forward to working with you to minimize risk to users.

Where should I report security issues?

We strongly encourage you to report all security issues privately via our vulnerability disclosure program. Please provide us with relevant technical details and repro steps to expedite our investigation. If you prefer not to use HackerOne, email us directly at [email protected] with details and repro steps.

@macdonst
Copy link
Contributor

Our Issue Template mentions you should read the CONTRIBUTING.md which has a section on Security Issues. It sends folks to:

https://helpx.adobe.com/security/alertus.html

So we already have some coverage on this but I have no issue adding the SECURITY.md file.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants