Who to contact for security issues
- Dominant language
- PHP
- Stars
- 11.6k
- Forks
- 2.2k
- Avg merge
- 11h 30m
- Merged PRs (30d)
- 3
Description
Hello 👋
I run a security community that finds and fixes vulnerabilities in OSS. A researcher (@michaellrowley) has found a potential issue, which I would be eager to share with you.
Could you add a `SECURITY.md` file with an e-mail address for me to send further details to? GitHub [recommends](https://docs.github.com/en/code-security/getting-started/adding-a-security-policy-to-your-repository) a security policy to ensure issues are responsibly disclosed, and it would help direct researchers in the future.
Looking forward to hearing from you 👍
(cc @huntr-helper)
Contributor guide
No contributing guide indexed for this repository
Research direction
Review GitHub's SECURITY.md guidance and the repository's existing contact or policy documentation. Add SECURITY.md with the approved security-reporting email address and responsible-disclosure instructions, then verify that researchers have a clear contact path.
Written by the indexing model from the issue text.
Assessment
- Domain
- documentation, security
- Issue type
- Documentation
- Difficulty
- 1/5
- Estimated time
- Under an hour
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 30/100