Files
error-prone-support/SECURITY.md
Stephan Schroevers 977019c5bf Improve contribution documentation (#572)
- Introduce a `./run-full-build.sh` script.
- Explicitly mention that users should run this script before opening a pull
  request.
- Emphasize that many build warnings can be resolved automatically.
- Introduce a `SECURITY.md` file as suggested by GitHub.
2023-04-13 09:10:56 +02:00

953 B

Security policy

We take security seriously. We are mindful of Error Prone Support's place in the software supply chain, and the risks and responsibilities that come with this.

Supported versions

This project uses semantic versioning. In general, only the latest version of this software is supported. That said, if users have a compelling reason to ask for patch release of an older major release, then we will seriously consider such a request. We do urge users to stay up-to-date and use the latest release where feasible.

Reporting a vulnerability

To report a vulnerability, please visit the security advisories page and click Report a vulnerability. We will take such reports seriously and work with you to resolve the issue in a timely manner.