Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Consider creating a .github repository with a SECURITY.md file on the default branch #14725

Open
jsoref opened this issue Sep 27, 2024 · 0 comments

Comments

@jsoref
Copy link
Contributor

jsoref commented Sep 27, 2024

  • Program: Other
  • Issue type: Feature request

Short description

This repository has a security policy which is visible on https://github.com/PowerDNS/pdns/security. For any repository that's created in this org (either by forking another org, or just as a source) unless someone has created a SECURITY.md file, the /security route will show:

https://github.com/PowerDNS/pdns-builder/security
image

...And hopefully:
image

Usecase

In the case of a fork, it's helpful to say "this is a fork from somewhere else, you should really contact them instead of us".
In the case of a home grown repo, it's helpful to point people somewhere -- and given that this org does have capacity to handle Security advisories, it makes sense to have a thing.

Description

Have a file SECURITY.md in a repo called .github.

It could probably be derived from https://github.com/PowerDNS/pdns/blob/master/SECURITY.md with some changes to remove references to PowerDNS and DNSdist and to add some notes about forks.

@Habbie Habbie added this to the common-soon milestone Sep 30, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants