Skip to content

Commit 788a2e7

Browse files
committed
doc: add security document
Signed-off-by: Richard Zak <[email protected]>
1 parent f6a5cee commit 788a2e7

File tree

1 file changed

+10
-0
lines changed

1 file changed

+10
-0
lines changed

SECURITY.md

+10
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,10 @@
1+
## MalwareDB Security & Vulnerability Disclosure Process
2+
3+
If any vulnerability or security issue is discovered in MalwareDB (or any repository under the [MalwareDB](https://github.com/malwaredb/) organization, please inform the maintainer via email at richard.j.zak *at* gmail.com. If you wish to communicate via GPG, send an email requesting a GPG public key, or send an email to rjzak *at* protonmail.ch.
4+
5+
Please include:
6+
* The steps needed to reproduce the vulnerability;
7+
* The vulnerable version(s), preferably with Git hash (`git log -1`);
8+
* and any additional files to reproduce the vulnerability.
9+
10+
Upon receipt, the maintainer will review, respond, and fix the vulnerability in a timely manner.

0 commit comments

Comments
 (0)