Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add SECURITY.md to document security policy #754

Merged
merged 2 commits into from
Dec 1, 2022

Conversation

mtreinish
Copy link
Member

This commit adds a SECURITY.md file to the repository to document the security policy. I recently enabled the private security advisories feature on the repository (which is a relatively new "beta" feature in github). Since we now have a place to privately raise potential security issues (besides email) it is good to have a documented policy on how security vulnerabilities should be reported and our support policy for version we will fix (which is just the latest release). As the project matures we can adjust this policy as needed (likely to support more than one version at a time).

This commit adds a SECURITY.md file to the repository to document the
security policy. I recently enabled the private security advisories
feature on the repository (which is a relatively new "beta" feature in
github). Since we now have a place to privately raise potential security
issues (besides email) it is good to have a documented policy on how
security vulnerabilities should be reported and our support policy for
version we will fix (which is just the latest release). As the project
matures we can adjust this policy as needed (likely to support more than
one version at a time).
Copy link
Collaborator

@IvanIsCoding IvanIsCoding left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Cool. We haven't been affected by a security issue yet, but it is good to have this in place before an incident

@coveralls
Copy link

coveralls commented Nov 30, 2022

Pull Request Test Coverage Report for Build 3593219435

  • 0 of 0 changed or added relevant lines in 0 files are covered.
  • No unchanged relevant lines lost coverage.
  • Overall coverage remained the same at 96.949%

Totals Coverage Status
Change from base Build 3588291393: 0.0%
Covered Lines: 13506
Relevant Lines: 13931

💛 - Coveralls

@mtreinish mtreinish added the automerge Queue a approved PR for merging label Dec 1, 2022
@mergify mergify bot merged commit cb9d8f7 into Qiskit:main Dec 1, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
automerge Queue a approved PR for merging
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants