From 77f1c771640f7e8df4b8122e17c6ce8386b5750d Mon Sep 17 00:00:00 2001 From: Marco Holz <marco.holz@fitko.de> Date: Fri, 11 Nov 2022 21:56:40 +0000 Subject: [PATCH] Add SECURITY.md --- SECURITY.md | 15 +++++++++++++++ 1 file changed, 15 insertions(+) create mode 100644 SECURITY.md diff --git a/SECURITY.md b/SECURITY.md new file mode 100644 index 000000000..9dc768a6f --- /dev/null +++ b/SECURITY.md @@ -0,0 +1,15 @@ +<!-- +SPDX-FileCopyrightText: 2022 FIT-Connect contributors + +SPDX-License-Identifier: EUPL-1.2 +--> + +# Security Vulnerabilities + +Our team is trying to make sure that our code is secure. Nevertheless, we are very grateful for anyone who finds a security vulnerability and reports it to us. + +Please do not report security vulnerabilities through GitLab directly. Because GitLab issues are public, this could result in directly disclosing the vulnerability. + +Please send any request regarding a potential security vulnerability with all the information that could help to `it-sicherheit <at> fitko.de`. See our [security.txt](https://www.fitko.de/.well-known/security.txt) for details. + +If possible please note the release version or the commit id of the main branch that you have investigated. -- GitLab