cms icon indicating copy to clipboard operation
cms copied to clipboard

Who to contact for security issues

Open zidingz opened this issue 4 years ago • 4 comments

Hey there!

I belong to an open source security research community, and a member (@0xamal) has found an issue, but doesn’t know the best way to disclose it.

If not a hassle, might you kindly add a SECURITY.md file with an email, or another contact method? GitHub recommends this best practice to ensure security issues are responsibly disclosed, and it would serve as a simple instruction for security researchers in the future.

Thank you for your consideration, and I look forward to hearing from you!

(cc @huntr-helper)

zidingz avatar Sep 25 '21 14:09 zidingz

Thanks, added security.md already.

liufee avatar Sep 26 '21 00:09 liufee

@liufee hi can you validate the reported issue very helpful

0xAmal avatar Sep 27 '21 15:09 0xAmal

@liufee please have a look on report

0xAmal avatar Oct 04 '21 14:10 0xAmal

@0xAmal can you send me again?

liufee avatar Jun 14 '22 09:06 liufee