2020-05-30 09:34:42 +03:00
|
|
|
Vulnerability Disclosure Policy
|
|
|
|
===============================
|
2020-05-30 09:16:02 +03:00
|
|
|
|
|
|
|
Please observe the standard best practices of responsible disclosure, especially considering that this is OSS.
|
2020-05-30 09:25:20 +03:00
|
|
|
See OWASP's disclosure `cheat sheet <https://cheatsheetseries.owasp.org/cheatsheets/Vulnerability_Disclosure_Cheat_Sheet.html>`_.
|
2020-05-30 09:16:02 +03:00
|
|
|
|
|
|
|
Some basic rules:
|
|
|
|
|
|
|
|
- Keep it legal.
|
|
|
|
- Respect everyone's privacy.
|
2020-05-30 09:25:20 +03:00
|
|
|
- Contact the core maintainer(s) immediately if you discover a serious security vulnerability (imichael@pm.me for now).
|
2020-05-30 09:16:02 +03:00
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|