Skip to content

Commit

Permalink
Adding SECURITY.md file
Browse files Browse the repository at this point in the history
This is based on the one from OSSF Scorecard
  • Loading branch information
crtrott committed Feb 13, 2024
1 parent f40d555 commit 2a8ac6f
Showing 1 changed file with 12 additions and 0 deletions.
12 changes: 12 additions & 0 deletions SECURITY.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,12 @@
# Reporting Security Issues

To report a security issue, please email
[lebrungrandt@ornl.gov](mailto:lebrungrandt@ornl.gov)
and [crtrott@sandia.gov](mailto:crtrott@sandia.gov)
with a description of the issue, the steps you took to create the issue,
affected versions, and, if known, mitigations for the issue.

Our vulnerability management team will respond within 5 working days of your
email. If the issue is confirmed as a vulnerability, we will open a
Security Advisory and acknowledge your contributions as part of it. This project
follows a 90 day disclosure timeline.

0 comments on commit 2a8ac6f

Please sign in to comment.