Skip to content

Commit feb17bb

Browse files
committed
Ruby now uses HackerOne for managing incoming security vulnerability reports
Update security documentation to point to https://hackerone.com/ruby.
1 parent 0399d8a commit feb17bb

File tree

1 file changed

+7
-3
lines changed

1 file changed

+7
-3
lines changed

en/security/index.md

+7-3
Original file line numberDiff line numberDiff line change
@@ -9,9 +9,13 @@ Here you will find information about security issues of Ruby.
99

1010
## Reporting Security Vulnerabilities
1111

12-
Security vulnerabilities should be reported via an email to
13-
security@ruby-lang.org ([the PGP public key](/security.asc)), which is a
14-
private mailing list. Reported problems will be published after fixes.
12+
Security vulnerabilities should be reported through our
13+
[bounty program page at HackerOne](https://hackerone.com/ruby).
14+
Reported problems will be published after fixes.
15+
16+
If you need to get in touch with the security team directly outside
17+
of HackerOne, you can send email to security@ruby-lang.org
18+
([the PGP public key](/security.asc)), which is a private mailing list.
1519

1620
The members of the mailing list are people who provide Ruby
1721
(Ruby committers and authors of other Ruby implementations,

0 commit comments

Comments
 (0)