Skip to content

Latest commit

 

History

History
14 lines (10 loc) · 985 Bytes

SECURITY.md

File metadata and controls

14 lines (10 loc) · 985 Bytes

Security Policy

Reporting a Vulnerability

Please email reports about any security-related issues you find to [email protected]. This mail is delivered to the core maintainer team.

Your email will be acknowledged within two business days, and you'll receive a more detailed response to your email within 7 days indicating the next steps in handling your report.

Please use a descriptive subject line for your report email.

In addition, please include the following information along with your report:

  • Your name and affiliation (if any).
  • A description of the technical details of the vulnerabilities. It is very important to let us know how we can reproduce your findings.
  • An explanation of who can exploit this vulnerability, and what they gain when doing so -- write an attack scenario. This will help us evaluate your report quickly, especially if the issue is complex.
  • Whether this vulnerability is public or known to third parties. If it is, please provide details.