Skip to content

Add in-scope/out-scope subsections to SECURITY-INSIGHTS.yml #1473

Open
@psschwei

Description

@psschwei

#SecuritySlam

What would you like to be cleaned:

When the SECURITY-INSIGHTS.yml file was initially created in #1469, the in-scope / out-scope subsections of the vulnerability-reporting section were omitted, as it was not entirely clear which of the OWASP Top 10 were in/out of scope. Someone with more knowledge of the project should update the SECURITY-INSIGHTS.yml file to include this section.

Why is this needed:

Adding this section will improve the project's score on the CLOMonitor site.

/sig release

Metadata

Metadata

Assignees

No one assigned

    Labels

    help wantedDenotes an issue that needs help from a contributor. Must meet "help wanted" guidelines.kind/cleanupCategorizes issue or PR as related to cleaning up code, process, or technical debt.sig/releaseCategorizes an issue or PR as relevant to SIG Release.

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions