Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

How to get in touch regarding a security concern #25

Open
zidingz opened this issue Oct 4, 2021 · 1 comment
Open

How to get in touch regarding a security concern #25

zidingz opened this issue Oct 4, 2021 · 1 comment

Comments

@zidingz
Copy link

zidingz commented Oct 4, 2021

Hey there!

I belong to an open source security research community, and a member (@melbinkm) has found an issue, but doesn’t know the best way to disclose it.

If not a hassle, might you kindly add a SECURITY.md file with an email, or another contact method? GitHub recommends this best practice to ensure security issues are responsibly disclosed, and it would serve as a simple instruction for security researchers in the future.

Thank you for your consideration, and I look forward to hearing from you!

(cc @huntr-helper)

@xkulio
Copy link

xkulio commented Oct 19, 2022

Hi,

+1

First of all, congrats on your software. I was reviewing some of the top open source hospital management apps and yours looks like a good candidate, but I found a vulnerability that I do not want to public disclose if there is a better option. Would it be possible to get this contact information?

Thanks

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants