Skip to content

docs: publish security reporting policy - #366

Open
dimin4241-svg wants to merge 1 commit into
stellar-vortex-protocol:mainfrom
dimin4241-svg:docs/security-policy-issue-317
Open

docs: publish security reporting policy#366
dimin4241-svg wants to merge 1 commit into
stellar-vortex-protocol:mainfrom
dimin4241-svg:docs/security-policy-issue-317

Conversation

@dimin4241-svg

@dimin4241-svg dimin4241-svg commented Aug 30, 2026

Copy link
Copy Markdown

Summary

Closes #317

This adds a repository-level security reporting policy and routes security-sensitive reports away from the public bug template.

Changes

  • Added SECURITY.md with supported-version guidance, private GitHub reporting, evidence requirements, safe harbor, and realistic response expectations.
  • Linked the policy from README.md.
  • Added a warning and private-reporting link to .github/ISSUE_TEMPLATE/bug_report.md.

Testing

  • git diff --check passes.
  • Verified all relative links resolve within the repository.
  • Documentation-only change; no automated test changes are required.

Checklist

  • Self-reviewed the diff
  • Added or updated tests for new behaviour
  • No secrets or credentials committed
  • PR title follows conventional commits (docs:)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Publish a coordinated vulnerability disclosure policy and wire it into the repo

1 participant