chiefonboarding / ChiefOnboarding

Free and open-source employee onboarding platform. Onboard new hires through Slack or the web portal.
https://chiefonboarding.com
GNU Affero General Public License v3.0
656 stars 121 forks source link

Trying to get in touch regarding a security issue #366

Closed psmoros closed 11 months ago

psmoros commented 11 months ago

Hello 👋

I run a security community that finds and fixes vulnerabilities in OSS. A researcher (@tomorroisnew) has found a potential issue, which I would be eager to share with you.

Could you add a SECURITY.md file with an e-mail address for me to send further details to? GitHub recommends a security policy to ensure issues are responsibly disclosed, and it would help direct researchers in the future.

Looking forward to hearing from you 👍

(cc @huntr-helper)

GDay commented 11 months ago

@psmoros I have just added it. Thanks! Feel free to reach out if you (or anyone on your platform) has found something serious.