Skip to content

docs: add security disclosure policy#47

Open
ccai40359-wq wants to merge 1 commit into
ZenYukti:mainfrom
ccai40359-wq:docs/security-policy-46
Open

docs: add security disclosure policy#47
ccai40359-wq wants to merge 1 commit into
ZenYukti:mainfrom
ccai40359-wq:docs/security-policy-46

Conversation

@ccai40359-wq

Copy link
Copy Markdown

Summary

  • Add a repository security policy with scope, CVSS-based severity definitions, safe harbor, and coordinated disclosure timeline
  • Add .well-known/security.txt for automated security policy discovery
  • Clarify that recognition is possible but monetary rewards are not guaranteed unless an official program states otherwise

Verification

  • python3 content assertions for required SECURITY.md and security.txt fields
  • git diff --cached --check
  • added-line security scan: security_findings_count 0
  • independent reviewer passed with no blocking concerns

Closes #46

@github-actions github-actions Bot added the documentation Improvements or additions to documentation label Jun 12, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

documentation Improvements or additions to documentation

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Overhaul SECURITY.md with CVSS standards and automated reporting workflows

1 participant