Skip to content
This repository was archived by the owner on Oct 9, 2023. It is now read-only.

Commit f71bf2e

Browse files
committed
Add security policy
1 parent 38f596b commit f71bf2e

1 file changed

Lines changed: 24 additions & 0 deletions

File tree

SECURITY.md

Lines changed: 24 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,24 @@
1+
# Security Policy
2+
3+
**⚠️ Please never use standard issues to report security problems; vulnerabilities are published once a fix release is available. ⚠️**
4+
5+
## Reporting a Vulnerability
6+
7+
If you found a security issue, please contact us by:
8+
9+
- [our huntr page](https://huntr.dev/repos/pluginsGLPI/mantis/)
10+
- a mail to \[glpi-security AT ow2.org\]
11+
12+
You should provide us all details about the issue and the way to reproduce it.
13+
You may also provide a script that can be used to check the issue exists.
14+
15+
Once the report will be handled, and if the issue is not yet fixed (or in progress)
16+
we'll add it to the GitHub security tab, and add you as observer. Meanwhile,
17+
you will reserve a CVE for the issue.
18+
19+
Thank you for improving the security of GLPI and its plugins.
20+
21+
## Supported Versions
22+
23+
We follow the same version support policy as GLPI.
24+
This means that we provide security patches to versions of the plugin that target a version of GLPI itself maintained from a security point of view.

0 commit comments

Comments
 (0)