Add Security Policy
@sywhang is already working on this.
Since Apr 5, 2023.
- Dominant language
- Go
- Stars
- 1.5k
- Forks
- 116
- Avg merge
- 7d 10h
- Merged PRs (30d)
- 4
Description
Adding a Security Policy is important as it provides guidance on how to report potential vulnerabilities and inform the vulnerabilities disclosure window for this repo.
I recently recommended https://github.com/uber-go/atomic/issues/132 and, like that change, this one also security-related.
If you agree, I can open a PR to suggest a Security Policy, and we can work together to communicate how the repo can best handle vulnerability reports.
Additional Context
Hi again! I'm Gabriela and I work on behalf of Google and the OpenSSF suggesting supply-chain security changes :)
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Assessment
This issue has not been assessed yet.