Skip to content

Commit fabfb99

Browse files
committed
chore: add security warning
1 parent eca0759 commit fabfb99

File tree

2 files changed

+13
-0
lines changed

2 files changed

+13
-0
lines changed

README.md

+4
Original file line numberDiff line numberDiff line change
@@ -73,6 +73,10 @@ We generate an `openapi-zkorum.json` file from the backend, and then use [openap
7373

7474
Some typescript source files are shared directly without using npm packages - by copy-pasting using rsync.
7575

76+
## Security disclosures
77+
78+
If you discover any security issues, please send an email to [email protected]. The email is automatically CCed to the entire team, and we'll respond promptly. See [SECURITY](./SECURITY.md) for more info.
79+
7680
## Contributing
7781

7882
See [CONTRIBUTING.md](./CONTRIBUTING.md)

SECURITY.md

+9
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,9 @@
1+
# Security Policy
2+
3+
## Reporting a Vulnerability
4+
5+
Please do NOT report possible security vulnerabilities in public channels such as GitHub Issues. If you believe you have found a security vulnerability, please email us at `[email protected]` with a description of the issue.
6+
7+
We will acknowledge the vulnerability as soon as possible - within 3 business days - and follow up when a fix lands. Please avoid discussing the vulnerability until we do so.
8+
9+
With your consent, we will add you to the repository [AUTHORS](./AUTHORS) file.

0 commit comments

Comments
 (0)