Skip to content

Security: Fati-DevRel/oss-supply-chain

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in this repository, please report it through GitHub's private vulnerability reporting feature.

To report a security issue:

  1. Go to the Security tab of this repository
  2. Click "Report a vulnerability"
  3. Provide details about the vulnerability

We will review your report and respond as quickly as possible.

Scope

This repository contains manuscript content (Markdown files) and build scripts. Security issues in scope include:

  • Vulnerabilities in build scripts or automation
  • Malicious content that may have been introduced
  • Issues with CI/CD workflows that could be exploited

Out of Scope

  • Typos or factual errors in manuscript content (please open a regular issue)
  • Feature requests or content suggestions (please open a regular issue)

There aren't any published security advisories