Skip to content

docs: Add security policy for responsible vulnerability disclosure #1722

Description

@Gbangbolaoluwagbemiga

Description

SECURITY.md exists (5030 bytes) but should be reviewed and enhanced with:

  • Clear disclosure timeline (acknowledge within 48h, fix within 90 days)
  • PGP key for encrypted reports
  • Bug bounty information (if applicable)
  • Scope of covered components

Acceptance Criteria

  • SECURITY.md updated with disclosure timeline
  • Contact email verified and monitored
  • Scope section lists covered components

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Labels

Stellar WaveIssues in the Stellar wave programarea: docsDocumentation and guidesdifficulty: beginnerGood first issue, ~1-4 hrspriority: highHigh impact, next sprintsecuritySecurity-related features or fixestype: featureNew capability or enhancement

Type

No type

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions