Skip to content

Commit 73a4a2a

Browse files
committed
Create a SECURITY.md
1 parent af285ef commit 73a4a2a

File tree

2 files changed

+31
-0
lines changed

2 files changed

+31
-0
lines changed

README.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -337,6 +337,9 @@ Support this project with your organization. Your logo will show up here with a
337337
I believe in Unicorns 🦄
338338
Support [me](http://www.paypal.me/jdnichollsc/2), if you do too.
339339

340+
## Security contact information 🚨
341+
To report a security vulnerability, please use the [Tidelift security contact](https://tidelift.com/security). Tidelift will coordinate the fix and disclosure.
342+
340343
## Happy coding 💯
341344
Made with ❤️
342345

SECURITY.md

Lines changed: 28 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,28 @@
1+
# Security Policy 🚨
2+
3+
## Reporting a Vulnerability 🐞
4+
5+
The `Proyecto 26` team and community take all security bugs in `react-native-inappbrowser-reborn` seriously. We appreciate your efforts to responsibly disclose your findings, and will make every effort to acknowledge your contributions.
6+
7+
To report a security vulnerability, please use the [Tidelift security contact](https://tidelift.com/security). Tidelift will coordinate the fix and disclosure.
8+
9+
The `Proyecto 26` team will send a response indicating the next steps in handling your report. After the initial reply to your report, the security team will endeavor to keep you informed of the progress towards a fix and full announcement, and may ask for additional information or guidance.
10+
11+
Report security bugs in third-party modules to the person or team maintaining the module.
12+
13+
## Disclosure Policy 📢
14+
15+
When the security team receives a security bug report, they will assign it to a primary handler. This person will coordinate the fix and release process,
16+
involving the following steps:
17+
18+
* Confirm the problem and determine the affected versions.
19+
* Audit code to find any potential similar problems.
20+
* Prepare fixes for all releases still under maintenance. These fixes will be released as fast as possible.
21+
22+
## Comments on this Policy ✍
23+
24+
If you have suggestions on how this process could be improved please submit a pull request.
25+
26+
## Security Is Everyone's Responsibility 🌐
27+
28+
Thank you for making the world a better place for everyone! 🙏

0 commit comments

Comments
 (0)