Skip to content

Commit 7ed98e6

Browse files
authored
Merge pull request #81 from klarna/scrub-email-address
Scrub email address
2 parents d31acb4 + 89462af commit 7ed98e6

File tree

2 files changed

+11
-9
lines changed

2 files changed

+11
-9
lines changed

.github/SECURITY.md

+6-6
Original file line numberDiff line numberDiff line change
@@ -5,23 +5,23 @@
55
Klarna takes security seriously and wants to ensure that we maintain a secure environment for our customers and that we also provide secure solutions for the open source community. To help us achieve these goals, please note the following before using this software:
66

77
- Review the software license to understand Klarna's obligations in terms of warranties and suitability for purpose
8-
- For any questions or concerns about security, you can reach out directly to Klarna's security team at [email protected]
8+
- For any questions or concerns about security, you can reach out directly to Klarna's security team (see below for contact form).
99
- We request that you work with our security team and opt for [responsible disclosure](https://corporate.walmart.com/article/responsible-disclosure-policy) using the guidelines below
1010
- We enforce SLAs on our security team and software engineers to remediate security bugs in a timely manner
1111
- All security related issues and pull requests you make should be tagged with "security" for easy identification
1212
- Please monitor this repository and update your environment in a timely manner as we release patches and updates
1313

1414
## Responsibly Disclosing Security Bugs to Klarna
1515

16-
If you find a security bug in this repository, please work with Klarna's security team following responsible disclosure principles and these guidelines:
16+
If you find a security bug in this repository, please work with Klarna's security team following responsible disclosure principles and these guidelines:
1717

18-
- Do not submit a normal issue or pull request in our public repository, instead report directly to security@klarna.com (If you would like to encrypt, please contact us for keys)
18+
- Do not submit a normal issue or pull request in our public repository, instead report directly to Klarna's security team (If you would like to encrypt, please contact us for keys). See below for contact details.
1919
- We will review your submission and may follow up for additional details
2020
- If you have a patch, we will review it and approve it privately; once approved for release you can submit it as a pull request publicly in our repos (we give credit where credit is due)
2121
- We will keep you informed during our investigation, feel free to check in for a status update
22-
- We will release the fix and publicly disclose the issue as soon as possible, but want to ensure we due properly due diligence before releasing
22+
- We will release the fix and publicly disclose the issue as soon as possible, but want to ensure we due properly due diligence before releasing
2323
- Please do not publicly blog or post about the security issue until after we have updated the public repo so that other downstream users have an opportunity to patch
2424

25-
## Contact / Misc.
25+
## Contact
2626

27-
If you have any questions, please reach out directly to the Klarna Security team at [email protected]
27+
Use [this form](https://www.klarna.com/uk/phishing-form/) to report any security concerns or questions.

.github/workflows/build.yml

+5-3
Original file line numberDiff line numberDiff line change
@@ -39,9 +39,9 @@ jobs:
3939
uses: actions/cache@v3
4040
with:
4141
path: ~/.cache/rebar3/hex/hexpm/packages
42-
key: ${{ runner.os }}-hex-${{ hashFiles('rebar.lock') }}
42+
key: ${{ runner.os }}-otp${{ matrix.otp-version }}-hex-${{ hashFiles('rebar.lock') }}
4343
restore-keys: |
44-
${{ runner.os }}-hex-
44+
${{ runner.os }}-otp${{ matrix.otp-version }}-hex-
4545
- name: Cache Dialyzer PLTs
4646
uses: actions/cache@v3
4747
with:
@@ -58,9 +58,10 @@ jobs:
5858
BITBUCKET_SERVER_URL: http://bitbucket:7990
5959
run: rebar3 as test eunit,ct,proper,cover,covertool generate
6060
- name: Store test logs
61-
uses: actions/upload-artifact@v3
61+
uses: actions/upload-artifact@v4
6262
if: always()
6363
with:
64+
overwrite: true
6465
name: logs
6566
path: |
6667
_build/test/logs
@@ -76,5 +77,6 @@ jobs:
7677
if: matrix.otp-version == '25'
7778
uses: actions/upload-artifact@v4
7879
with:
80+
overwrite: true
7981
name: edoc
8082
path: "doc"

0 commit comments

Comments
 (0)