docs: add security policy#363
Conversation
Signed-off-by: Alex Bozarth <ajbozart@us.ibm.com>
|
The PR description has been updated. Please fill out the template for your PR to be reviewed. |
Merge ProtectionsYour pull request matches the following merge protections and will not be merged until they are valid. 🟢 Enforce conventional commitWonderful, this rule succeeded.Make sure that we follow https://www.conventionalcommits.org/en/v1.0.0/
|
|
looking at the security tab we may also need to enable reporting once this is merged as I see no report button at the location linked in this new doc (like I see at https://github.com/Qiskit/qiskit-serverless/security) |
|
@ajbozarth Agreed - the text looks good to me, but one of the admins will need to enable private vuln. reporting as per https://docs.github.com/en/code-security/how-tos/report-and-fix-vulnerabilities/configure-vulnerability-reporting/configuring-private-vulnerability-reporting-for-a-repository |
|
Status Update: This needs to following before merge:
|
Misc PR
Type of PR
Description
Implements a SECURITY.md policy. This policy was taken from other IBM open source projects such as beeai-framework and qiskit-serverless and is a simple version of the standard GitHub policy.
Testing