Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Create a Security Policy #854

Closed
joycebrum opened this issue Mar 22, 2023 · 0 comments · Fixed by #855
Closed

Create a Security Policy #854

joycebrum opened this issue Mar 22, 2023 · 0 comments · Fixed by #855

Comments

@joycebrum
Copy link
Contributor

Hi, I'm from Google working with the OpenSSF to improve supply-chain security in many open source projects.

I would like to suggest for RustCrypto/utils to create a Security Policy to the repo.

A Security Policy is a GitHub standard document (SECURITY.md) that can be seen in the "Security Tab" to instruct users about how to report vulnerability in the safest and most efficient way possible.

image

It is a Scorecard Recommendation (being one check of medium priority) and a Github Recommendation.

Together with this issue I'll submit one suggestion of Security Policy, feel free to edit it directly or ask me for editions until it is in compliance with how RustCrypto/utils would best handle vulnerability reports.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant