iansinnott / jstz

🌐Timezone detection for JavaScript
Other
175 stars 33 forks source link

How to get in touch regarding a security concern #26

Open JamieSlome opened 2 years ago

JamieSlome commented 2 years ago

Hello πŸ‘‹

I run a security community that finds and fixes vulnerabilities in OSS. A researcher (@roni-carta) has found a potential issue, which I would be eager to share with you.

Could you add a SECURITY.md file with an e-mail address for me to send further details to? GitHub recommends a security policy to ensure issues are responsibly disclosed, and it would help direct researchers in the future.

Looking forward to hearing from you πŸ‘

(cc @huntr-helper)