Merge pull request #1507 from PrivateBin/vulnerability-policy

Change SECURITY.md to hint for acceping vulnerability reports via the GitHub mail
This commit is contained in:
El RIDO 2025-02-07 22:21:07 +01:00 committed by GitHub
commit 1c2c45ec2d
No known key found for this signature in database
GPG key ID: B5690EEEBB952194

View file

@ -14,5 +14,8 @@ a response within a week (usually during the next weekend). The respondee will
reply from their personal address and can offer you their GPG public key to
support end-to-end encrypted communication on sensitive topics or attachments.
You can also [use the corresponding GitHub form](https://github.com/PrivateBin/PrivateBin/security/advisories/new)
to report a new vulnerability directly on GitHub.
You can also contact us via the regular issue tracker if the risk of early
publication is low or you would request input from other PrivateBin users.