Skip to content

Add SECURITY.md, default codeowners#264

Merged
jameslamb merged 2 commits into
rapidsai:mainfrom
jameslamb:docs/security-md
May 28, 2026
Merged

Add SECURITY.md, default codeowners#264
jameslamb merged 2 commits into
rapidsai:mainfrom
jameslamb:docs/security-md

Conversation

@jameslamb
Copy link
Copy Markdown
Member

Description

Contributes to rapidsai/build-planning#281

  • adds a SECURITY.md describing how to report security vulnerabilities

Notes for Reviewers

Why not just set this org-wide?

An org-wide default is set at https://github.com/rapidsai/.github/blob/main/SECURITY.md, but adding an actual file in each repo offers a few benefits:

  • ensures security policy travels with the repo to forks, clones, mirrors, etc.
  • allows per-repo governance over the security policy (via PR review, CODEOWNERS, etc.)

This can be admin-merged

I'll stop CI intentionally after pre-commit runs, to save CI time and resources.

@jameslamb jameslamb added non-breaking Introduces a non-breaking change improvement Improves an existing functionality labels May 27, 2026
Comment thread .github/CODEOWNERS
@jameslamb jameslamb changed the title Add SECURITY.md Add SECURITY.md, default codeowners May 28, 2026
@jameslamb
Copy link
Copy Markdown
Member Author

CI is broken but not by these changes, and this project isn't being actively maintained right now. Similar to #262 (comment)

admin-merging this

@jameslamb jameslamb marked this pull request as ready for review May 28, 2026 01:25
@jameslamb jameslamb merged commit 553ada1 into rapidsai:main May 28, 2026
3 checks passed
@jameslamb jameslamb deleted the docs/security-md branch May 28, 2026 01:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

improvement Improves an existing functionality non-breaking Introduces a non-breaking change

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant