Skip to content

Comments

Add security.txt for standardized vulnerability disclosure#69

Merged
Yaketh (Kushmanmb) merged 3 commits intomasterfrom
copilot/publish-ownership-information
Feb 23, 2026
Merged

Add security.txt for standardized vulnerability disclosure#69
Yaketh (Kushmanmb) merged 3 commits intomasterfrom
copilot/publish-ownership-information

Conversation

Copy link

Copilot AI commented Feb 20, 2026

Implements RFC 9116 security.txt to publish security contact and ownership information at /.well-known/security.txt.

Changes

Result

Security researchers can now discover standardized reporting channels at the conventional .well-known URI. Next.js serves the file statically from public/ without additional configuration.

Notes

  • Expiration date requires renewal before February 2027
  • Follows same pattern as existing walletconnect.txt in same directory

Warning

Firewall rules blocked me from connecting to one or more addresses (expand for details)

I tried to connect to the following addresses, but was blocked by firewall rules:

  • ethereum.org
    • Triggering command: /home/REDACTED/work/_temp/ghcca-node/node/bin/node /home/REDACTED/work/_temp/ghcca-node/node/bin/node --enable-source-maps /home/REDACTED/work/_temp/copilot-developer-action-main/dist/index.js (dns block)
  • fonts.googleapis.com
    • Triggering command: /opt/hostedtoolcache/node/24.13.0/x64/bin/node /opt/hostedtoolcache/node/24.13.0/x64/bin/node /home/REDACTED/work/base/base/apps/web/node_modules/next/dist/bin/next build (dns block)

If you need me to access, download, or install something from one of these locations, you can either:


✨ Let Copilot coding agent set things up for you — coding agent works faster and does higher quality work when set up for your repo.

Copilot AI and others added 2 commits February 20, 2026 12:23
Co-authored-by: Kushmanmb <193178375+Kushmanmb@users.noreply.github.com>
Co-authored-by: Kushmanmb <193178375+Kushmanmb@users.noreply.github.com>
Copilot AI changed the title [WIP] Add ownership information to ethereum.org Add security.txt for standardized vulnerability disclosure Feb 20, 2026
@Kushmanmb Yaketh (Kushmanmb) marked this pull request as ready for review February 20, 2026 23:48
@Kushmanmb Yaketh (Kushmanmb) merged commit 7958dc4 into master Feb 23, 2026
10 of 13 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants