You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
chore(os): implement open source readiness and CI/CD automation
- Updated GitHub Actions workflow for automated Maven build and test on Java 21
- Create SECURITY.md to define vulnerability reporting policy
- Implement GitHub Issue templates for bug reports and feature requests
- Update README.md with status badges (CI/CD, License, Security)
- Standardize documentation and quickstart instructions for public release
Copy file name to clipboardExpand all lines: SECURITY.md
+5-10Lines changed: 5 additions & 10 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -2,22 +2,17 @@
2
2
3
3
## Supported Versions
4
4
5
-
We currently provide security updates for the following versions:
5
+
The following versions of PCM are currently being supported with security updates:
6
6
7
7
| Version | Supported |
8
8
| ------- | ------------------ |
9
9
| 0.1.x |:white_check_mark:|
10
-
| < 0.1.0|:x:|
10
+
| < 0.1|:x:|
11
11
12
12
## Reporting a Vulnerability
13
13
14
-
We take the security of PCM seriously. If you believe you have found a security vulnerability, please do NOT report it publicly in the issue tracker.
14
+
We take the security of PCM seriously. If you believe you have found a security vulnerability, please report it to us by emailing [EMAIL_ADDRESS].
15
15
16
-
Instead, please send an email to **security@vibe-afrika.dev**.
16
+
Please do **not** open a public GitHub issue for security vulnerabilities.
17
17
18
-
Please include:
19
-
- A description of the vulnerability.
20
-
- Steps to reproduce the issue.
21
-
- Potential impact.
22
-
23
-
We will acknowledge your report within 48 hours and provide a timeline for a fix. We follow a responsible disclosure policy.
18
+
After you report a vulnerability, we will acknowledge your email within 48 hours and provide a timeline for a fix. We follow a responsible disclosure policy and ask that you give us reasonable time to fix the issue before making it public.
0 commit comments