Skip to content

Commit

Permalink
Fix wording around "including your employer"
Browse files Browse the repository at this point in the history
  • Loading branch information
ehuss committed Aug 15, 2023
1 parent 6d818fd commit 0fe0fca
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion src/doc/contrib/src/process/security.md
Original file line number Diff line number Diff line change
Expand Up @@ -12,7 +12,7 @@ The general order of events happens as follows:
1. The WG will start a private Zulip stream to coordinate discussion and plans for a fix.
1. The WG will pull in one or more team members into the Zulip stream ("responders").
- Security vulnerabilities are **embargoed** until they are released publicly.
People who are brought into these discussions should **not** discuss the issue with *anyone* outside of the group, or with your employer, without first consulting The WG.
People who are brought into these discussions should **not** discuss the issue with *anyone* outside of the group, including your employer, without first consulting The WG.
1. A discussion then starts to evaluate the severity of the issue and what possible solutions should be considered.
This includes figuring out who will volunteer to actually develop the patches to resolve the issue, and who will review it.
1. The WG will create a temporary private fork of the `rust-lang/cargo` repo using GitHub's [repository security advisory][github-advisory] system.
Expand Down

0 comments on commit 0fe0fca

Please sign in to comment.