Skip to content

Commit 3de3f0c

Browse files
Create SECURITY.md
1 parent 783c344 commit 3de3f0c

File tree

1 file changed

+17
-0
lines changed

1 file changed

+17
-0
lines changed

SECURITY.md

Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
# Security Policy
2+
3+
## Reporting a Vulnerability
4+
5+
Report security vulnerabilities by emailing the Trimble Cybersecurity team at:
6+
7+
8+
9+
Report security vulnerabilities in third-party modules to the person or team maintaining the module.
10+
11+
## Disclosure Policy
12+
13+
When the security team receives a security bug report, they will assign it to a primary handler. This person will coordinate the fix and release process, involving the following steps:
14+
15+
- Confirm the problem and determine the affected versions.
16+
- Audit code to find any potential similar problems.
17+
- Prepare fixes for all releases still under maintenance. These fixes will be released as fast as possible.

0 commit comments

Comments
 (0)