Skip to content

Commit 75947bb

Browse files
authored
Update SECURITY.md
1 parent 145ce0c commit 75947bb

File tree

1 file changed

+12
-14
lines changed

1 file changed

+12
-14
lines changed

SECURITY.md

Lines changed: 12 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -1,21 +1,19 @@
11
# Security Policy
22

3-
## Supported Versions
3+
## Reporting a Vulnerability
44

5-
Use this section to tell people about which versions of your project are
6-
currently being supported with security updates.
5+
We take security seriously and ask that any vulnerabilities be reported **privately**.
76

8-
| Version | Supported |
9-
| ------- | ------------------ |
10-
| 5.1.x | :white_check_mark: |
11-
| 5.0.x | :x: |
12-
| 4.0.x | :white_check_mark: |
13-
| < 4.0 | :x: |
7+
* Please use [GitHub’s private vulnerability reporting feature](https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing) on this repository.
8+
* Do **not** open a public issue or pull request for security-related matters.
149

15-
## Reporting a Vulnerability
10+
## Response
11+
12+
* We aim to acknowledge valid reports within **48 hours**.
13+
* Once confirmed, we will work on a fix and notify you when it’s resolved.
14+
* Please allow us time to address the issue before any public disclosure.
1615

17-
Use this section to tell people how to report a vulnerability.
16+
## Notes
1817

19-
Tell them where to go, how often they can expect to get an update on a
20-
reported vulnerability, what to expect if the vulnerability is accepted or
21-
declined, etc.
18+
* Public issues or PRs disclosing vulnerabilities may be closed for security reasons.
19+
* Always keep your installation up to date with the latest release.

0 commit comments

Comments
 (0)