Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Added security.txt file #14725

Merged
merged 1 commit into from
May 16, 2024
Merged

Added security.txt file #14725

merged 1 commit into from
May 16, 2024

Conversation

snipe
Copy link
Owner

@snipe snipe commented May 16, 2024

While we make our security posture and info pretty clear, it's common standard these days to include a security.txt file. I've opted not to bother with using a URL instead of an email address, since we surface our security reporting email address in 100 other places.

Copy link

what-the-diff bot commented May 16, 2024

PR Summary

  • Addition of a New Security File
    A new file titled public/.well-known/security.txt has been created to enhance the security measures in the application.

    • The file contains a contact field that provides a designated email where security-related issues or queries can be directed.

    • An expiration date that sets a specific lifetime for the filed security details to remain effective.

    • It includes acknowledgments link to the webpage showcasing appreciation for the valuable contributions made towards the project.

    • The preferred-languages has been outlined to guide on the most preferred modes of communication.

    • There's a canonical link present which refers to the authoritative location of this security file on the internet.

    • The policy link directs to the application's official webpage detailing the existing security measures and policies.

    • Lastly, there's a hiring link that provides information about any current job openings or career opportunities available.

@snipe snipe merged commit 2f18430 into develop May 16, 2024
8 checks passed
@snipe snipe deleted the features/added_security_dot_txt branch May 16, 2024 08:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant