Add SECURITY.md#1312
Conversation
|
Auto-sync is disabled for draft pull requests in this repository. Workflows must be run manually. Contributors can view more details about this message here. |
I had just added this in a PR #1310 :), but I would like your approach on this as per rapids standards. |
|
Ha oh great! Sorry, I hadn't checked all the repos yet, just auto-generated these draft PRs with https://github.com/rapidsai/rapids-reviser Let's use your PR, though if you don't have strong opinions then I do think you should copy the |
Description
Contributes to rapidsai/build-planning#281
SECURITY.mddescribing how to report security vulnerabilitiesNotes for Reviewers
Why not just set this org-wide?
An org-wide default is set at https://github.com/rapidsai/.github/blob/main/SECURITY.md, but adding an actual file in each repo offers a few benefits:
This can be admin-merged
I'll stop CI intentionally after
pre-commitruns, to save CI time and resources.