Skip to content

Add security policy for vulnerability reporting#80

Open
rtibbles wants to merge 1 commit into
mainfrom
rtibbles-patch-1
Open

Add security policy for vulnerability reporting#80
rtibbles wants to merge 1 commit into
mainfrom
rtibbles-patch-1

Conversation

@rtibbles
Copy link
Copy Markdown
Member

Summary

Adds an org wide security policy
Emphasizes:

  • the requirement for Proof of Concepts for each claimed exploit
  • no exploit testing against our live services
  • no reporting of vulnerabilities caused by 3rd party hosting of our software

AI usage

This policy was written using Claude Code, under my direction, aiming to be as concise and readable as possible, and emphasizing the points that I focused on.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant