Skip to content

Commit 37c528b

Browse files
committed
started to look at the review from Security Lab folks
1 parent 3813695 commit 37c528b

1 file changed

Lines changed: 3 additions & 1 deletion

File tree

content/github/managing-security-vulnerabilities/about-disclosing-vulnerabilities.md

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -36,7 +36,9 @@ Publishing the details of a security vulnerability doesn't make maintainers look
3636

3737
The process for reporting and disclosing vulnerabilities for projects on {% data variables.product.prodname_dotcom_the_website %} is as follows:
3838

39-
If you are a security researcher who would like report a vulnerability, first check if there is a security policy for the related repository. For more information, see "[About security policies](/github/managing-security-vulnerabilities/adding-a-security-policy-to-your-repository#about-security-policies)." If there is one, follow it to understand the process before contacting the security team for that repository. If there isn't a security policy for the repository, you may try to privately contact the maintainers based on information available in the _security.md_ file.
39+
If you are a security researcher who would like report a vulnerability, first check if there is a security policy for the related repository. For more information, see "[About security policies](/github/managing-security-vulnerabilities/adding-a-security-policy-to-your-repository#about-security-policies)." If there is one, follow it to understand the process before contacting the security team for that repository. If there isn't a security policy for the repository, you may try to privately contact the maintainers:
40+
- by looking at all the text files in the root directory. In some cases, the contact details may
41+
- by creating an issue requesting contact details.
4042

4143
{% note %}
4244

0 commit comments

Comments
 (0)