Add a Security policy ##doc (#307)
This commit is contained in:
parent
f0e5db286c
commit
b5c8874eb5
1 changed files with 21 additions and 0 deletions
21
SECURITY.md
Normal file
21
SECURITY.md
Normal file
|
|
@ -0,0 +1,21 @@
|
|||
# Security Policy
|
||||
|
||||
## Supported Versions
|
||||
|
||||
| Version | Supported |
|
||||
| ---------------- | ------------------ |
|
||||
| latest-release | :white_check_mark: |
|
||||
| * | :x: |
|
||||
|
||||
## Reporting a Vulnerability
|
||||
|
||||
Security issues in the Rizin repository should be reported by email to security@rizin.re. Your email will be delivered to a small security team that will handle the report. Your email will be acknowledged within 48 hours, and you'll receive a more detailed response to your email within 72 hours indicating the next steps in handling your report.
|
||||
|
||||
For your convenience, we accept reports written in one of the languages listed on our [security.txt](https://rizin.re/.well-known/security.txt) page, but we prefer reports in English.
|
||||
|
||||
If you have not received a reply to your email within 48 hours, or have not heard from the security team for the past week, there are a few steps you can take (in order):
|
||||
|
||||
- Directly contact at least one member from [Rizin Security Team](https://rizin.re/teams/security/)
|
||||
- Inform the team over the [public chats](https://rizin.re/#community) that you sent a message regarding a security issue.
|
||||
|
||||
**Important:** Don't disclose any information regarding the issue itself in the public chats.
|
||||
Loading…
Reference in a new issue