-
Notifications
You must be signed in to change notification settings - Fork 984
#1544 Add SECURITY.md file #1545
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: dev
Are you sure you want to change the base?
Conversation
PR Reviewer Guide 🔍Here are some key observations to aid the review process:
|
PR Code Suggestions ✨Explore these optional code suggestions:
|
||||||||||||||
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Caution
Changes requested ❌
Reviewed everything up to 1c69f2a in 1 minute and 35 seconds. Click for details.
- Reviewed
36lines of code in1files - Skipped
0files when reviewing. - Skipped posting
3draft comments. View those below. - Modify your settings and rules to customize what types of comments Ellipsis leaves. And don't forget to react with 👍 or 👎 to teach Ellipsis.
1. .github/SECURITY.md:6
- Draft comment:
The 'Supported Versions' table is empty; consider adding version details or clarifying if no versions are supported. - Reason this comment was not posted:
Confidence changes required:50%<= threshold50%None
2. .github/SECURITY.md:19
- Draft comment:
The 'Security Update Policy' section is empty; please add details or remove the header if not needed. - Reason this comment was not posted:
Comment did not seem useful. Confidence is useful =0%<= threshold50%This comment is asking the PR author to update the PR description by adding details or removing a header. According to the rules, comments should not ask the author to update the PR description. Therefore, this comment should be removed.
3. .github/SECURITY.md:10
- Draft comment:
Typographical error: The email domain in 'julep-ai' appears to be incorrect. It should likely be '[email protected]'. - Reason this comment was not posted:
Marked as duplicate.
Workflow ID: wflow_jp2joMQjSmiSLPaF
You can customize by changing your verbosity settings, reacting with 👍 or 👎, replying to comments, or adding code review rules.
| | ------- | ------------ | | ||
|
|
||
| ## Reporting a Vulnerability | ||
| If you discover a security vulnerability in this project, please report it by emailing the maintainers at [julep-ai]([email protected]). **Do not create a public issue** to disclose security-related information. This helps protect users while the issue is being addressed. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Email address seems incorrect; likely should be '[email protected]' instead of '[email protected]'.
| If you discover a security vulnerability in this project, please report it by emailing the maintainers at [julep-ai](hey@julep.a). **Do not create a public issue** to disclose security-related information. This helps protect users while the issue is being addressed. | |
| If you discover a security vulnerability in this project, please report it by emailing the maintainers at [julep-ai](hey@julep.ai). **Do not create a public issue** to disclose security-related information. This helps protect users while the issue is being addressed. |
|
@claude please review |
|
Claude encountered an error —— View job I'll analyze this and get back to you. |
|
I did not had all the policy for julep therefore I left few places empty. If I could know where to refer them I will make the changes. And while doing so make other small mistakes |
User description
#1544 Created a template SECURITY.md file.
PR Type
Documentation
Description
Add SECURITY.md file with vulnerability reporting guidelines
Define security policy structure and response timeframes
Establish email-based vulnerability disclosure process
Diagram Walkthrough
File Walkthrough
SECURITY.md
Add security policy and vulnerability reporting guidelines.github/SECURITY.md