Skip to content

Commit 6984cbd

Browse files
authored
feat: update SECURITY.md (#285)
1 parent 241dbf2 commit 6984cbd

File tree

3 files changed

+4
-6
lines changed

3 files changed

+4
-6
lines changed

SECURITY.md

+1-2
Original file line numberDiff line numberDiff line change
@@ -4,11 +4,10 @@ GitHub takes the security of our software products and services seriously, inclu
44

55
If you believe you have found a security vulnerability in this GitHub-owned open source repository, you can report it to us in one of two ways.
66

7-
If the vulnerability you have found is *not* [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) or if you do not wish to be considered for a bounty reward, please report the issue to us directly using [private vulnerability reporting](https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing/privately-reporting-a-security-vulnerability).
7+
If the vulnerability you have found is *not* [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) or if you do not wish to be considered for a bounty reward, please report the issue to us directly through [opensource-security@github.com](mailto:opensource-security@github.com).
88

99
If the vulnerability you have found is [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) and you would like for your finding to be considered for a bounty reward, please submit the vulnerability to us through [HackerOne](https://hackerone.com/github) in order to be eligible to receive a bounty award.
1010

1111
**Please do not report security vulnerabilities through public GitHub issues, discussions, or pull requests.**
1212

1313
Thanks for helping make GitHub safe for everyone.
14-

lib/content/SECURITY.md

+1-2
Original file line numberDiff line numberDiff line change
@@ -2,11 +2,10 @@ GitHub takes the security of our software products and services seriously, inclu
22

33
If you believe you have found a security vulnerability in this GitHub-owned open source repository, you can report it to us in one of two ways.
44

5-
If the vulnerability you have found is *not* [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) or if you do not wish to be considered for a bounty reward, please report the issue to us directly using [private vulnerability reporting](https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing/privately-reporting-a-security-vulnerability).
5+
If the vulnerability you have found is *not* [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) or if you do not wish to be considered for a bounty reward, please report the issue to us directly through [opensource-security@github.com](mailto:opensource-security@github.com).
66

77
If the vulnerability you have found is [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) and you would like for your finding to be considered for a bounty reward, please submit the vulnerability to us through [HackerOne](https://hackerone.com/github) in order to be eligible to receive a bounty award.
88

99
**Please do not report security vulnerabilities through public GitHub issues, discussions, or pull requests.**
1010

1111
Thanks for helping make GitHub safe for everyone.
12-

tap-snapshots/test/apply/source-snapshots.js.test.cjs

+2-2
Original file line numberDiff line numberDiff line change
@@ -1301,7 +1301,7 @@ GitHub takes the security of our software products and services seriously, inclu
13011301
13021302
If you believe you have found a security vulnerability in this GitHub-owned open source repository, you can report it to us in one of two ways.
13031303
1304-
If the vulnerability you have found is *not* [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) or if you do not wish to be considered for a bounty reward, please report the issue to us directly using [private vulnerability reporting](https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing/privately-reporting-a-security-vulnerability).
1304+
If the vulnerability you have found is *not* [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) or if you do not wish to be considered for a bounty reward, please report the issue to us directly through [opensource-security@github.com](mailto:opensource-security@github.com).
13051305
13061306
If the vulnerability you have found is [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) and you would like for your finding to be considered for a bounty reward, please submit the vulnerability to us through [HackerOne](https://hackerone.com/github) in order to be eligible to receive a bounty award.
13071307
@@ -2908,7 +2908,7 @@ GitHub takes the security of our software products and services seriously, inclu
29082908
29092909
If you believe you have found a security vulnerability in this GitHub-owned open source repository, you can report it to us in one of two ways.
29102910
2911-
If the vulnerability you have found is *not* [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) or if you do not wish to be considered for a bounty reward, please report the issue to us directly using [private vulnerability reporting](https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing/privately-reporting-a-security-vulnerability).
2911+
If the vulnerability you have found is *not* [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) or if you do not wish to be considered for a bounty reward, please report the issue to us directly through [opensource-security@github.com](mailto:opensource-security@github.com).
29122912
29132913
If the vulnerability you have found is [in scope for the GitHub Bug Bounty Program](https://bounty.github.com/#scope) and you would like for your finding to be considered for a bounty reward, please submit the vulnerability to us through [HackerOne](https://hackerone.com/github) in order to be eligible to receive a bounty award.
29142914

0 commit comments

Comments
 (0)