Skip to content

Security Response Committee - Current Status? Future Plan? #2835

Open
@dims

Description

@dims

https://opentelemetry.io/docs/security/security-response/#public-disclosure-processes has one reference to Security Response Committee (SRC) and no other references to it anywhere else.

It also places the TC cncf-opentelemetry-tc@lists.cncf.io as an intermediary to the SRC.

Only other references in can find in github is in docs that are in draft status:
https://github.com/search?q=org%3Aopen-telemetry%20%2FSecurity%20Response%20Committee%2F&type=code

So is there a SRC?
Who is on it? How do you staff it?
What is it supposed to do?
When are drafts going to become policy?

xref: https://github.com/kubernetes/committee-security-response
xref: https://github.com/containerd/project/blob/main/SECURITY_ADVISORS
xref: https://github.com/argoproj/argoproj/tree/main/sigs/sig-security

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions