Skip to content

Commit f66b44e

Browse files
authored
Merge pull request #52 from jupyter/Carreau-patch-1
Suggest public sec vuln reporting via github beta program.
2 parents d485a63 + 86ec517 commit f66b44e

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

docs/vulnerability-handling.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -21,6 +21,8 @@ If you believe you’ve found a security vulnerability in a Jupyter project, ple
2121
to encrypt your security reports, you can use [this PGP public key](https://jupyter.org/assets/ipython_security.asc). Project Jupyter
2222
will respond within 3 days to all new reports.
2323

24+
We are also testing GitHub Private vulnerability reporting, you can try to submit a security advisory on [jupyter/security using this link](https://github.com/jupyter/security/security/advisories/new).
25+
2426
## Coordinated Disclosures
2527

2628
Project Jupyter follows a [coordinated disclosure](https://cheatsheetseries.owasp.org/cheatsheets/Vulnerability_Disclosure_Cheat_Sheet.html#responsible-or-coordinated-disclosure)

0 commit comments

Comments
 (0)