mirror of
https://github.com/moby/buildkit.git
synced 2026-08-09 01:01:08 +00:00
Add project processes guide
This guide defines more clearly how we prioritize issues, releases, project scope, and security boundary. Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
This commit is contained in:
3
.github/SECURITY.md
vendored
3
.github/SECURITY.md
vendored
@@ -6,6 +6,9 @@ issue, please bring it to their attention right away!
|
||||
**Please _DO NOT_ file a public issue**, instead send your report privately to
|
||||
[security@docker.com](mailto:security@docker.com).
|
||||
|
||||
|
||||
Explanation of BuildKit security boundary and what we consider a security issue can be found in [here](/PROJECT.md#security-boundary). If you are unsure if you have found a security issue, it is always better to check privately first.
|
||||
|
||||
Security reports are greatly appreciated, and we will publicly thank you for it
|
||||
(if you want to). We also like to send gifts—if you're into schwag, make
|
||||
sure to let us know. We currently do not offer a paid security bounty program,
|
||||
|
||||
Reference in New Issue
Block a user