Update SECURITY.md

This commit is contained in:
Jyri-Petteri Paloposki 2020-08-31 21:38:16 +03:00 committed by GitHub
parent 042075d1e8
commit a7661eb33a
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

View file

@ -9,6 +9,13 @@
## Reporting a Vulnerability
Please report any security issues via email to security@getontracks.org. If you don't get a reply for your email, resend the email after one week. If there's still no reply, open an issue in the issue queue but *do not disclose the details* in the issue, only ask about the reply and status.
Please report any security issues via email to security@getontracks.org.
If you don't get a reply for your email, resend the email after one week.
If there's still no reply, open an issue in the issue queue but *do not
disclose the details* in the issue, only ask about the reply and status.
Unfortunately Tracks is not part of a bug bounty program, but we do provide appropriate credits for disclosing security issues.
You can (and should) encrypt the email you send with OpenGPG key
0x8af45b6854414d2d, which you can find for example in pool.sks-keyservers.net.
Unfortunately Tracks is not part of a bug bounty program, but we do provide
appropriate credits for disclosing security issues.