openjs-foundation / security-collab-space

a repository for documenting and coordinating the foundation's security collaboration space
Apache License 2.0
23 stars 5 forks source link

Guide Section: Vulnerability Disclosure Policies #110

Open ruddermann opened 4 months ago

ruddermann commented 4 months ago

The purpose of this guide section is to help maintainers generate and maintain VDP Policies using the provided templates below. This includes a section-by-section explanation of the current contents of the templates and considerations for customization.

A working draft of this guidance can be found here: https://docs.google.com/document/d/1J2ao1b7b2R6uM7Sew0XVwRdIO1q3TxLttbiNJdG_5pI

### Templates
- [ ] https://github.com/openjs-foundation/security-collab-space/issues/107
- [ ] https://github.com/openjs-foundation/security-collab-space/issues/108
SecurityCRob commented 3 months ago

CRob from OpenSSF's Vulnerability Disclosure WG. Template looks good, I left a comment and a small suggestion related to it. Nice work!