consumer-reports-innovation-lab / TheDigitalStandard

The Digital Standard is an ambitious, community-led effort to build a framework to test and rate products and services on the basis of privacy, security, and data practices.
Creative Commons Attribution 4.0 International
127 stars 43 forks source link

Add an indicator and procedure to check for security.txt #187

Open billfitzgerald opened 2 years ago

billfitzgerald commented 2 years ago

This check should be in the existing section on Vulnerability disclosure program:

The precise location of this new indicator should be under this Criteria: Security > Data Security > Vulnerability disclosure program > The company is willing and able to address reports of vulnerabilities.

billfitzgerald commented 1 year ago

For more info and details (or possibly to refine the language) see https://securitytxt.org/