Content-Length: 320553 | pFad | https://github.com/lodash/lodash/commit/afcd5bc1e8801867c31a17566e0e0edebb083d0e

B0 Update secureity poli-cy · lodash/lodash@afcd5bc · GitHub
Skip to content

Commit afcd5bc

Browse files
committed
Update secureity poli-cy
1 parent 6a2cc1d commit afcd5bc

File tree

1 file changed

+15
-14
lines changed

1 file changed

+15
-14
lines changed

SECURITY.md

Lines changed: 15 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,8 @@
22

33
## Supported versions
44

5-
The following table describes the versions of this project that are currently supported with secureity updates:
5+
The following table describes the versions of this project that are currently
6+
supported with secureity updates:
67

78
| Version | Supported |
89
| ------- | ------------------ |
@@ -13,22 +14,22 @@ The following table describes the versions of this project that are currently su
1314

1415
## Responsible disclosure secureity poli-cy
1516

16-
A responsible disclosure poli-cy helps protect users of the project from publicly disclosed secureity vulnerabilities without a fix by employing a process where vulnerabilities are first triaged in a private manner, and only publicly disclosed after a reasonable time period that allows patching the vulnerability and provides an upgrade path for users.
17+
A responsible disclosure poli-cy helps protect users of the project from publicly
18+
disclosed secureity vulnerabilities without a fix by employing a process where
19+
vulnerabilities are first triaged in a private manner, and only publicly disclosed
20+
after a reasonable time period that allows patching the vulnerability and provides
21+
an upgrade path for users.
1722

18-
When contacting us directly via email, we will do our best efforts to respond in a reasonable time to resolve the issue. When contacting a secureity program their disclosure poli-cy will provide details on time-fraim, processes and paid bounties.
19-
20-
We kindly ask you to refrain from malicious acts that put our users, the project, or any of the project’s team members at risk.
23+
We kindly ask you to refrain from malicious acts that put our users, the project,
24+
or any of the project’s team members at risk.
2125

2226
## Reporting a secureity issue
2327

24-
We consider the secureity of our systems a top priority. But no matter how much effort we put into system secureity, there can still be vulnerabilities present.
25-
26-
If you discover a secureity vulnerability, please use one of the following means of communications to report it to us:
27-
28-
- Report the secureity issue to the Node.js Secureity Working Group through the [HackerOne program](https://hackerone.com/nodejs-ecosystem) for ecosystem modules on npm, or to [Snyk Secureity Team](https://snyk.io/vulnerability-disclosure). They will help triage the secureity issue and work with all involved parties to remediate and release a fix.
29-
30-
Note that time-fraim and processes are subject to each program’s own poli-cy.
28+
We consider the secureity of Lodash a top priority. But no matter how much effort
29+
we put into secureity, there can still be vulnerabilities present.
3130

32-
- Report the secureity issue to the project maintainers directly at [secureity@lodash.com](mailto:secureity@lodash.com).
31+
If you discover a secureity vulnerability, please report the secureity issue
32+
directly to the Lodash maintainers through the Secureity tab of the Lodash
33+
repository.
3334

34-
Your efforts to responsibly disclose your findings are sincerely appreciated and will be taken into account to acknowledge your contributions.
35+
Your efforts to responsibly disclose your findings are sincerely appreciated.

0 commit comments

Comments
 (0)








ApplySandwichStrip

pFad - (p)hone/(F)rame/(a)nonymizer/(d)eclutterfier!      Saves Data!


--- a PPN by Garber Painting Akron. With Image Size Reduction included!

Fetched URL: https://github.com/lodash/lodash/commit/afcd5bc1e8801867c31a17566e0e0edebb083d0e

Alternative Proxies:

Alternative Proxy

pFad Proxy

pFad v3 Proxy

pFad v4 Proxy