nose-devs / nose

nose is nicer testing for python
http://readthedocs.org/docs/nose/en/latest/
1.36k stars 395 forks source link

Add a security policy #1130

Open psmoros opened 6 months ago

psmoros commented 6 months ago

Hello 👋

I run a security community that finds and fixes vulnerabilities in OSS. A researcher (@h2oa) has found a potential issue, which I would be eager to share with you.

Could you add a SECURITY.md file with an e-mail address for me to send further details to? GitHub recommends a security policy to ensure issues are responsibly disclosed, and it would help direct researchers in the future.

Looking forward to hearing from you 👍

(cc @huntr-helper)

Piyush-Bhor commented 6 months ago

They have a bug bounty program on Huntr.com. Here's the link: https://huntr.com/bounties?target=https://github.com/nose-devs/nose