Skip to content

Commit cce4ec7

Browse files
committed
docs: adding a security policy
1 parent 7a91a4b commit cce4ec7

File tree

1 file changed

+12
-0
lines changed

1 file changed

+12
-0
lines changed

SECURITY.md

Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,12 @@
1+
# Security Policy
2+
3+
## Reporting a Vulnerability
4+
5+
If there are any vulnerabilities in `@readme/syntax-highlighter`, don't hesitate to _report them_.
6+
7+
Please email [email protected] and describe what you've found.
8+
9+
- If you have a fix, explain or attach it.
10+
- In the near time, expect a reply with the required steps. Also, there may be a demand for a pull request which include the fixes.
11+
12+
> You should not disclose the vulnerability publicly if you haven't received an answer in some weeks. If the vulnerability is rejected, you may post it publicly within some hour of rejection, unless the rejection is withdrawn within that time period. After the vulnerability has been fixed, you may disclose the vulnerability details publicly over some days.

0 commit comments

Comments
 (0)