nprapps / interactive-template

A Node-based template for starting news apps and interactive pages
MIT License
62 stars 20 forks source link

Trying to get in touch regarding a security issue #25

Closed JamieSlome closed 3 years ago

JamieSlome commented 3 years ago

Hi there,

I couldn't find a SECURITY.md in your repository and am not sure how to best contact you privately to disclose a security issue.

Can you add a SECURITY.md file with an e-mail to your repository, so that our system can send you the vulnerability details? GitHub suggests that a security policy is the best way to make sure security issues are responsibly disclosed.

Once you've done that, you should receive an e-mail within the next hour with more info.

Thanks! (cc @huntr-helper)

thomaswilburn commented 3 years ago

I'm not entirely sure what security issue you think you have found in a static site generator, but you can contact me at twilburn@npr.org with details.

JamieSlome commented 3 years ago

@thomaswilburn - see #26.