-
Notifications
You must be signed in to change notification settings - Fork 108
Open
Description
Adding a Security Policy is important as it provides guidance on how to report potential vulnerabilities and inform the vulnerabilities disclosure window for this repo.
I recently recommended #132 and, like that change, this one also security-related.
If you agree, I can open a PR to suggest a Security Policy, and we can work together to communicate how the repo can best handle vulnerability reports.
Additional Context
Hi again! I'm Gabriela and I work on behalf of Google and the OpenSSF suggesting supply-chain security changes :)
Metadata
Metadata
Assignees
Labels
No labels