-
Notifications
You must be signed in to change notification settings - Fork 2
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Add a SECURITY.md file pointing to our RFC 9116
To date we have had help from 10 or so security researchers, lets keep advertising this file as a standard point of contact for people wanting to help improve the security of IRF Uppsala, our infrastructure, our codebase and our users (external as well as internal).
- Loading branch information
1 parent
27897fa
commit 684261e
Showing
2 changed files
with
8 additions
and
1 deletion.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,7 @@ | ||
# No explicit security policy for `ovt` alone. | ||
|
||
Thanks for taking the time to have a look at our security policy. We strive to take your concern seriously. | ||
|
||
However we do not currently have one security policy specific for only `ovt`, and we therefor recommend you instead have a look at the [security.txt](https://www.irfu.se/.well-known/security.txt). This `security.txt` file is defined as per [RFC 9116](https://www.rfc-editor.org/rfc/rfc9116.html). | ||
|
||
Note: Our [IRFU.se security.txt](https://www.irfu.se/.well-known/security.txt) file is for IRF Uppsala (covering things like: `irfu.se`, `*.irfu.se`, `irfu-matlab`, etc.), however if you have found a security problem at our headquarters at IRF Kiruna (irf.se), then please have a look at their [IRF.se security.txt](https://www.irf.se/.well-known/security.txt) file instead. |