From 36102f168938244624a5cf843d455f057f50779a Mon Sep 17 00:00:00 2001 From: Joe Chen Date: Sun, 6 Mar 2022 20:13:56 +0800 Subject: security: encourage reporting vulnerabilities through huntr.dev (#6811) [skip ci] --- SECURITY.md | 9 ++++++--- 1 file changed, 6 insertions(+), 3 deletions(-) (limited to 'SECURITY.md') diff --git a/SECURITY.md b/SECURITY.md index 01c5e5e8..cd4e7609 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -2,9 +2,12 @@ ## Supported versions -Only lastest two minor version releases are supported for patching security fixes. +Only lastest two minor version releases are supported for accepting vulnerability reports and patching for fixes. ## Reporting a vulnerability -Please create a dummy issue with high-level description of the security vulnerability, -then report details to [security@gogs.io](mailto:security@gogs.io) privately, thank you! +Please create a dummy issue with high-level description of the security vulnerability, then report details to [security@gogs.io](mailto:security@gogs.io) privately. + +We strongly enourage to use https://huntr.dev/ for submitting and managing status of vulnerability reports instead of emails. + +Thank you! -- cgit v1.2.3