chore: add security policy (#2378)

This commit is contained in:
Jonas L 2023-02-26 19:35:03 +01:00 committed by GitHub
parent 9814958065
commit d6d1b83513
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 14 additions and 0 deletions

14
SECURITY.md Normal file
View File

@ -0,0 +1,14 @@
# Security Policy
## Reporting a Vulnerability
**Please do not use GitHub issues for security-sensitive communication.**
The LibreTime maintainers ask that known and suspected vulnerabilities to be privately and responsibly disclosed by:
- sending all the required detail to [security@libretime.org](security@libretime.org),
- or by filling a [security advisory on Github](https://github.com/libretime/libretime/security/advisories/new).
A LibreTime maintainer will acknowledged the report within 3 working days.
We aim to provide a security patch within 30 days, after this period the report will be disclosed to the public. The security patch will be distributed for the [maintained versions of LibreTime](https://libretime.org/docs/developer-manual/development/releases/#distributions-releases-support).