Skip to content

Add SECURITY.md #12289

@externalPointerVariable

Description

What would you like to share?

A SECURITY.md file, while not mandatory for all projects, is highly beneficial as it outlines how to report vulnerabilities, enhancing user trust and transparency. It guides contributors in responsible disclosure, aligning with best practices for open-source projects where security is vital. Additionally, many platforms encourage or require it for listing projects in security advisories, and it can define key security policies, such as response times and data handling protocols. Having a SECURITY.md is especially valuable for projects involving sensitive data, demonstrating a proactive approach to security management.

Additional information

I would like to submit a PR if this issue is assigned to me ✅

Metadata

Metadata

Assignees

No one assigned

    Labels

    awaiting triageAwaiting triage from a maintainer

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions