Skip to content

Commit 4760e31

Browse files
authored
Create SECURITY.md (GoogleContainerTools#6140)
1 parent 92dc3ab commit 4760e31

File tree

2 files changed

+13
-1
lines changed

2 files changed

+13
-1
lines changed

README.md

+5-1
Original file line numberDiff line numberDiff line change
@@ -56,7 +56,7 @@ We welcome any contributions from the community with open arms - Skaffold wouldn
5656

5757
**Office Hours**
5858

59-
We hold open office hours every other Wednesday at 9:30 AM Pacific Time. This is an open forum for anyone to show up and bring ideas, concerns, or just in general come hang out with the team! This is also a great time to get direct feedback on contributions, or give us feedback on ways you think we can improve the project. Come show us how you're using Skaffold!
59+
We hold open office hours on the last Wednesday of the month at 9:30 AM Pacific Time. This is an open forum for anyone to show up and bring ideas, concerns, or just in general come hang out with the team! This is also a great time to get direct feedback on contributions, or give us feedback on ways you think we can improve the project. Come show us how you're using Skaffold!
6060

6161
Join the [skaffold-users mailing list](https://groups.google.com/forum/#!forum/skaffold-users) to get the calendar invite directly on your calendar.
6262
You can access the hangouts invite directly from this calendar invite.
@@ -71,3 +71,7 @@ Survey Link - https://forms.gle/BMTbGQXLWSdn7vEs6
7171

7272
Skaffold is generally available and considered production ready.
7373
Detailed feature maturity information and how we deprecate features are described in our [Deprecation Policy](https://skaffold.dev/docs/references/deprecation).
74+
75+
## Security Disclosures
76+
77+
Please see our [security disclosure process](SECURITY.md). All [security advisories](https://github.com/GoogleContainerTools/skaffold/security/advisories) are managed on Github.

SECURITY.md

+8
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,8 @@
1+
# Reporting Security Issues
2+
3+
To report a security issue, please use http://g.co/vulnz. We use
4+
http://g.co/vulnz for our intake, and do coordination and disclosure here on
5+
GitHub (including using [GitHub Security Advisory]). The Google Security Team will
6+
respond within 5 working days of your report on g.co/vulnz.
7+
8+
[GitHub Security Advisory]: https://github.com/GoogleContainerTools/skaffold/security/advisories

0 commit comments

Comments
 (0)