You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Need to leverage GitHub scanning / dependabot v2.
Need to have a SECURITY.md file so that contributors are aware of all KNOWN KNOWNS and KNOWN UNKNOWNS.
At a minimum:
Security Policy
Security Advisories
Dependabot Alerts
Code Scanning
Benefits
Users will have a report of clear list of actions taken on security reports issued by agencies AND
Contributors have a clear process on how to take action on vulnerability alerts.
Both Users and Contributors can TRUST the software to be as free as possible from known vulnerabilities
The text was updated successfully, but these errors were encountered:
Desired Behavior
Need to leverage GitHub scanning / dependabot v2.
Need to have a
SECURITY.md
file so that contributors are aware of all KNOWN KNOWNS and KNOWN UNKNOWNS.At a minimum:
Benefits
The text was updated successfully, but these errors were encountered: