Skip to content

RFC: Create SECURITY.md #26

@vatsalyagoel

Description

@vatsalyagoel

Is your feature request related to a problem? Please describe.
Currently there is no way for people to report security vulnerabilities in any of the ReactiveUI packages.

Describe the solution you'd like
Add a SECUTIRY.md file as suggested by GitHub that lists versions that will get security patches and a way for people to securely send reports.

Describe suggestions on how to achieve the feature
I recommend creating a publishing a PGP key for someone to encrypt their communications before reporting them to us via security@reactiveui.net. They can then be discussed as an advisory in the repository's security section. Sample: dotnet/corefx

Additional context
https://github.com/features/security

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions