Skip to content

Commit

Permalink
doc: Add security report policy
Browse files Browse the repository at this point in the history
  • Loading branch information
JacksonTian committed Jan 3, 2024
1 parent 58f445a commit a646633
Showing 1 changed file with 9 additions and 0 deletions.
9 changes: 9 additions & 0 deletions SECURITY.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,9 @@
# Security Vulnerability Reporting

We consider the security of our systems a top priority. But no matter how much effort we put into system security, there can still be vulnerabilities present.

If you discover a security vulnerability within our project, we would like you to inform us as soon as possible in a responsible manner. Please follow these steps for reporting:

- Send your report directly to Alibaba Security via the vulnerability reporting page: <https://security.alibaba.com/>. This will ensure that your report is handled in a timely and secure manner.
- Do not disclose the issue publicly until we’ve had a chance to address it. Public disclosure of a security vulnerability could put the entire community at risk.
- Provide as much information as possible about the potential vulnerability, so we can reproduce and fix the issue quickly.

0 comments on commit a646633

Please sign in to comment.