refactor(docs): Update SECURITY.md to mention opening GitHub security advisories (#3787)

fixes #3786
This commit is contained in:
Jamil
2024-02-29 08:57:10 -08:00
committed by GitHub
parent f429fd673b
commit afac720d0d

View File

@@ -16,31 +16,38 @@ running the latest version of Firezone at all times.
## Reporting a Vulnerability
Please **do not** open a Github Issue for security issues you encounter.
Instead, please send an email to `security AT firezone.dev` describing the issue
and we'll respond as soon as possible.
Please **do not** open a regular Github Issue for security issues you encounter.
Instead do one of the following and we'll respond as soon as possible:
- Open a GitHub security advisory by visiting:
https://github.com/firezone/firezone/security/advisories/new
- Or, send an email to `security AT firezone.dev` describing the issue
## PGP Key
You may use the public key below to encrypt emails to `security AT firezone.dev`.
You can also find this key at:
You may use the public key below to encrypt emails to
`security AT firezone.dev`. You can also find this key at:
https://pgp.mit.edu/pks/lookup?op=get&search=0x45113BA04AD83D8A
https://keys.openpgp.org/vks/v1/by-fingerprint/250F8B56804107042DFC6A7345113BA04AD83D8A
```
-----BEGIN PGP PUBLIC KEY BLOCK-----
Version: SKS 1.1.6
Comment: Hostname: pgp.mit.edu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=0gEr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=yoyX
-----END PGP PUBLIC KEY BLOCK-----
```