Skip to content

Commit

Permalink
Create SECURITY.md
Browse files Browse the repository at this point in the history
  • Loading branch information
dakka authored Mar 31, 2024
1 parent 60d6fc8 commit 19cce7c
Showing 1 changed file with 24 additions and 0 deletions.
24 changes: 24 additions & 0 deletions SECURITY.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,24 @@
# Security Policy
Security Policy
This document outlines the security policy for the conjure_enum project. Here, we detail how to report vulnerabilities and how we handle them.

## Reporting a Vulnerability

If you discover a potential security vulnerability in conjure_enum, we encourage you to report it responsibly. Here's how:

- **Privately Contact Us:** Please file a [detailed report](https://github.com/fix8mt/conjure_enum/security/advisories/new).
- **Include Details:** In your email, please provide the following information (if applicable):
- A clear description of the vulnerability.
- Steps to reproduce the vulnerability (if possible).
- The potential impact of the vulnerability.
We appreciate your cooperation in keeping conjure_enum secure. We will work with you confidentially to address the vulnerability as quickly as possible.

## Disclosure Process

Once a vulnerability is confirmed, we will follow these steps:

- **Acknowledge Receipt:** We will acknowledge receipt of your report within 48 hours.
- **Work on a Fix:** We will prioritize fixing the vulnerability and aim to release a patch within a reasonable timeframe.
- **Notify Users (if necessary):** For critical vulnerabilities, we may publish a security advisory on the GitHub repository detailing the issue and mitigation steps.

Thank You

0 comments on commit 19cce7c

Please sign in to comment.