From 6840939860adbcaefea9c59a941eba358ead4d7a Mon Sep 17 00:00:00 2001 From: wrongecho <32306651+wrongecho@users.noreply.github.com> Date: Tue, 29 Mar 2022 22:12:17 +0100 Subject: [PATCH] Create SECURITY.md --- SECURITY.md | 27 +++++++++++++++++++++++++++ 1 file changed, 27 insertions(+) create mode 100644 SECURITY.md diff --git a/SECURITY.md b/SECURITY.md new file mode 100644 index 00000000..2ea30098 --- /dev/null +++ b/SECURITY.md @@ -0,0 +1,27 @@ +# Security Policy + +## In Beta + +ITFlow is currently in early beta and is a work in progress. +We currently advise against storing confidential data in ITFlow for this reason. + +That said, in order to eventually be useful, ITFlow **must** be secure and take security seriously. +We attempt to follow best security practices where possible, including [automated code scanning](https://sonarcloud.io/component_measures?id=itflow-org_itflow&metric=security_rating&view=list). + +## Supported Versions + +ITFlow is in Beta. + +| Version | Supported | +| ------- | ------------------ | +| Beta | :white_check_mark: | + +## Reporting a Vulnerability + +**Please do not report security vulnerabilities through public GitHub issues.** + +If you have discovered a security issue, please report it to us in as much detail as possible so we can fix it. +You should expect to receive an initial acknowledgement within 72 hours. If you do not, please get in touch discretely via GitHub issues/Forum/Discord to ensure we received your e-mail. + +Security contact: +![image](https://user-images.githubusercontent.com/32306651/160704188-763e6763-429e-41b9-9007-6a09bcfdba2b.png)