Skip to content

Commit

Permalink
Merge pull request #706 from cole-miller/security
Browse files Browse the repository at this point in the history
Add security policy
  • Loading branch information
cole-miller authored Sep 26, 2024
2 parents eea0cbc + 2ae83b7 commit 45a0740
Showing 1 changed file with 16 additions and 0 deletions.
16 changes: 16 additions & 0 deletions SECURITY.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,16 @@
# How to report a security issue with dqlite

If you find a security issue with dqlite, the best way to report it is using
GitHub's private vulnerability reporting. [Here][advisory] is the form to
submit a report, and [here][docs] is the detailed documentation for the GitHub
feature.

Once you submit a report, the dqlite team will work with you to figure out
whether there is a security issue. If so, we will develop a fix, get a CVE
assigned, and coordinating the release of the fix. The [Ubuntu Security
disclosure and embargo policy][policy] contains more information about what you
can expect during this phase, and what we expect from you.

[advisory]: https://github.com/canonical/dqlite/security/advisories/new
[docs]: https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing-information-about-vulnerabilities/privately-reporting-a-security-vulnerability
[policy]: https://ubuntu.com/security/disclosure-policy

0 comments on commit 45a0740

Please sign in to comment.