Skip to content

Commit 033c200

Browse files
committed
fixed security file
Signed-off-by: bota <Bota@dotkernel.com>
1 parent b766c1d commit 033c200

1 file changed

Lines changed: 9 additions & 2 deletions

File tree

SECURITY.md

Lines changed: 9 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -7,15 +7,22 @@
77
| 1.x | :white_check_mark: | ![PHP from Packagist (specify version)](https://img.shields.io/packagist/php-v/dotkernel/dot-totp/1.0.0) |
88

99
## Reporting Potential Security Issues
10+
1011
If you have encountered a potential security vulnerability in this project, please report it to us at <security@dotkernel.com>.
1112
We will work with you to verify the vulnerability and patch it.
13+
1214
When reporting issues, please provide the following information:
15+
1316
- Component(s) affected
1417
- A description indicating how to reproduce the issue
1518
- A summary of the security vulnerability and impact
16-
We request that you contact us via the email address above and give the project contributors a chance to resolve the vulnerability and issue a new release prior to any public exposure;
17-
this helps protect the project's users and provides them with a chance to upgrade and/or update to protect their applications.
19+
20+
We request that you contact us via the email address above and give the project contributors a chance to resolve the vulnerability and issue a new release prior to any public exposure;
21+
this helps protect the project's users and provides them with a chance to upgrade and/or update to protect their applications.
22+
1823
## Policy
24+
1925
If we verify a reported security vulnerability, our policy is:
26+
2027
- We will patch the current release branch, as well as the immediate prior minor release branch.
2128
- After patching the release branches, we will immediately issue new security fix releases for each patched release branch.

0 commit comments

Comments
 (0)