Skip to content

Create SECURITY.md for security policy - #75

Draft
Didin2001 wants to merge 1 commit into
chroma-core:mainfrom
Didin2001:patch-1
Draft

Create SECURITY.md for security policy#75
Didin2001 wants to merge 1 commit into
chroma-core:mainfrom
Didin2001:patch-1

Conversation

@Didin2001

@Didin2001 Didin2001 commented Mar 5, 2026

Copy link
Copy Markdown

Add a security policy document outlining supported versions and vulnerability reporting.

Package Request

Package Information

  • Package Name:
  • Registry:
  • GitHub Repository:

Package Details

  • Description:
  • Weekly Downloads/Stars:
  • Last Updated:
  • License:

Checklist

Please verify the following before submitting:

  • Package is publicly available and actively maintained
  • Created directory at <registry>/<native_identifier>/
  • Added config.json with all required fields:
    • native_identifier matches the package name exactly as it appears in the registry
    • collection_name_prefix is globally unique within the registry
    • repo points to a valid, accessible GitHub repository
    • registry is one of: "npm", "py_pi", "crates_io", "golang_proxy", "github_releases", "terraform", or "ruby_gems"
    • tag_formats array matches actual GitHub release tag patterns
    • sentinel_timestamp is in RFC 3339/ISO 8601 format
    • include contains valid glob patterns (e.g., "**/*.md" not ".md")
    • version_sample_relative_size is set
    • version_sample_max_size is set
  • Updated index.json to include the new package
  • For monorepos: glob patterns target only the specific package subdirectory

Additional Notes

Add a security policy document outlining supported versions and vulnerability reporting.
@Didin2001
Didin2001 marked this pull request as draft March 5, 2026 21:53
@Didin2001
Didin2001 marked this pull request as ready for review March 5, 2026 21:53
@Didin2001
Didin2001 marked this pull request as draft March 5, 2026 21:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant