-
Notifications
You must be signed in to change notification settings - Fork 1
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
1 parent
05438ab
commit 320309c
Showing
1 changed file
with
25 additions
and
0 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,25 @@ | ||
# Security Policy | ||
|
||
## Supported Versions | ||
|
||
This section lists the versions of the "Clang-Format Code Style Action for C++" project that are currently being supported with security updates. It's important to use supported versions to ensure the security of your project. | ||
|
||
| Version | Supported | | ||
| ------- | ------------------ | | ||
| 1.0.x | :white_check_mark: | | ||
|
||
## Reporting a Vulnerability | ||
|
||
If you believe you have found a security vulnerability in the "Clang-Format Code Style Action for C++", we encourage you to report it as soon as possible. Please follow these steps: | ||
|
||
1. **Do Not Publicly Disclose**: Do not disclose the vulnerability publicly or to any third parties. Public disclosure can put the entire community at risk. | ||
2. **Report Privately**: Send your vulnerability report privately to [insert your preferred contact method - could be an email address, a secure form, etc.]. Please provide as much information about the vulnerability as possible, including steps to reproduce, potential impact, and suggested mitigation or remediation if available. | ||
3. **Response Timeline**: Our maintainers take security seriously and will respond promptly, typically within 72 hours. We will review your report and work with you to understand and resolve the issue quickly. | ||
4. **Acknowledgment**: If you wish, we will publicly acknowledge your responsible disclosure in our project updates, unless you prefer to remain anonymous. | ||
5. **Updates on Resolution**: We will keep you informed about the progress of resolving the security issue you have reported. | ||
|
||
Remember, security is a top priority for us, and we appreciate your help in keeping our community safe. Thank you for your contribution to the security of the "Clang-Format Code Style Action for C++" project. | ||
|
||
--- | ||
|
||
Contributions to improve this action are always welcome! Feel free to open issues or submit pull requests for general improvements as well. |