Skip to content

Add security policy contact details and a SECURITY-INSIGHTS file #306

Description

@kilodesodiq-arch

Problem Statement. SECURITY.md directs reporters to "the contact information in
the README." README.md has no security contact.

Technical Context.
SECURITY.md,
README.md,
.github/SECURITY-INSIGHTS.yml.

Expected Outcome.

  • SECURITY.md lists security@chainforge.app (or GitHub Security Advisories
    fallback).
  • A .github/SECURITY-INSIGHTS.yml file declares supported versions, languages, and
    security policy.

Acceptance Criteria.

  • A test command gh api repos/ChainForgee/ChainForge/security-advisories returns the
    configured contact.

Files or modules likely to be affected.
SECURITY.md,
new .github/SECURITY-INSIGHTS.yml,
README.md.

Difficulty. Easy
Estimated effort. XS



Backlog item #98 from `docs/maintainer-issue-backlog.md.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions