We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 263e027 commit 3f689adCopy full SHA for 3f689ad
SECURITY.md
@@ -1,5 +1,17 @@
1
-# Security Policy
+# Reporting a Vulnerability
2
3
-## Reporting a Vulnerability
+Please do **not** report security vulnerabilities through public GitHub issues.
4
5
-Please report a found vulnerability here: <https://www.eclipse.org/security/>
+Please report vulnerabilities to this repository via **GitHub security advisories** instead.
6
+
7
+How? Inside affected repository → security tab
8
9
+for contributor:
10
+→ Report a vulnerability
11
12
+for committer:
13
+→ advisories → New draft security advisory
14
15
+In severe cases, you can also report a found vulnerability via mail or eclipse issue here: <https://www.eclipse.org/security/>
16
17
+See [Eclipse Foundation Vulnerability Reporting Policy](https://www.eclipse.org/projects/handbook/#vulnerability)
0 commit comments