Files
youki/SECURITY.md

13 lines
756 B
Markdown

# Reporting security issues
To report security issues, use GitHub Security Advisories (GHSA) forms such as https://github.com/youki-dev/youki/security/advisories/new .
If you do not have a GitHub account, you may use email to reach out to the [Committers](https://youki-dev.github.io/youki/community/governance.html) directly at `cncf-youki-security@lists.cncf.io`.
## Handling security issues
The [Committers](https://youki-dev.github.io/youki/community/governance.html) will try to triage the report and make the first response within 7 days.
Releasing a fix may take a longer time, and may need further assistance from the reporter.
If you do not see any response after 7 days, ping the Committers via email at `cncf-youki-security@lists.cncf.io`.