doc: Improve security reporting guidelines

See #7524
This commit is contained in:
Florian Bruhin 2022-12-13 14:24:32 +01:00
parent 5afc8a6819
commit 9bf258c8f8
3 changed files with 19 additions and 4 deletions

3
.github/SECURITY.md vendored
View File

@ -1 +1,4 @@
Please report security bugs to [security@qutebrowser.org](mailto:security@qutebrowser.org). Please report security bugs to [security@qutebrowser.org](mailto:security@qutebrowser.org).
(or if GPG encryption is desired, contact me@the-compiler.org with GPG ID [0x916EB0C8FD55A072](https://www.the-compiler.org/pubkey.asc)).
Alternatively, [report a vulnerability](https://github.com/qutebrowser/qutebrowser/security/advisories/new) via GitHub's [private reporting feature](https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing/privately-reporting-a-security-vulnerability).

View File

@ -66,8 +66,14 @@ ways:
https://listi.jpberlin.de/mailman/listinfo/qutebrowser[mailinglist] at https://listi.jpberlin.de/mailman/listinfo/qutebrowser[mailinglist] at
mailto:qutebrowser@lists.qutebrowser.org[]. mailto:qutebrowser@lists.qutebrowser.org[].
For security bugs, please contact me directly at mail@qutebrowser.org, GPG ID Please report security bugs to security@qutebrowser.org
https://www.the-compiler.org/pubkey.asc[0x916eb0c8fd55a072]. (or if GPG encryption is desired, contact me@the-compiler.org with GPG ID
https://www.the-compiler.org/pubkey.asc[0x916EB0C8FD55A072]).
Alternatively,
https://github.com/qutebrowser/qutebrowser/security/advisories/new[report a vulnerability]
via GitHub's
https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing/privately-reporting-a-security-vulnerability[private reporting feature].
Requirements Requirements
------------ ------------

View File

@ -133,8 +133,14 @@ If you prefer, you can also write to the
https://listi.jpberlin.de/mailman/listinfo/qutebrowser[mailinglist] at https://listi.jpberlin.de/mailman/listinfo/qutebrowser[mailinglist] at
mailto:qutebrowser@lists.qutebrowser.org[] instead. mailto:qutebrowser@lists.qutebrowser.org[] instead.
For security bugs, please contact me directly at me@the-compiler.org, GPG ID For security bugs, please contact security@qutebrowser.org (or if GPG
https://www.the-compiler.org/pubkey.asc[0xFD55A072]. encryption is desired, contact me@the-compiler.org with GPG ID
https://www.the-compiler.org/pubkey.asc[0x916EB0C8FD55A072]).
Alternatively,
https://github.com/qutebrowser/qutebrowser/security/advisories/new[report a vulnerability]
via GitHub's
https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing/privately-reporting-a-security-vulnerability[private reporting feature].
== COPYRIGHT == COPYRIGHT
This program is free software: you can redistribute it and/or modify it under This program is free software: you can redistribute it and/or modify it under