Skip to content
Merged
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
6 changes: 6 additions & 0 deletions apps/site/pages/en/about/security-reporting.mdx
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,12 @@ For more details on active Security Policies, checkout [this page](https://githu

Report security bugs in Node.js via [HackerOne](https://hackerone.com/nodejs).

> **Note:** Submitting a report through HackerOne requires a minimum
> [Signal](https://docs.hackerone.com/en/articles/8369891-signal-impact) score of **1.0**.
> If your Signal score is below this threshold, please reach out to the Node.js
> security release stewards directly via the
> [OpenJS Foundation Slack](https://slack-invite.openjsf.org/) instead.
Normally, your report will be acknowledged within 5 days, and you'll receive
a more detailed response to your report within 10 days indicating the
next steps in handling your submission. These timelines may extend when
Expand Down
Loading