Skip to content

Latest commit

 

History

History
21 lines (11 loc) · 1.26 KB

SECURITY.md

File metadata and controls

21 lines (11 loc) · 1.26 KB

Security Release Process

Ansible-collection-for-fos is a new and growing community of volunteers and users. The ansible-collection-for-fos community has adopted this security disclosure and response policy to ensure we responsibly handle critical issues.

Maintainers Team

Security vulnerabilities should be handled quickly and sometimes privately. The primary goal of this process is to reduce the total time users are vulnerable to publicly known exploits.

Disclosures

Private Disclosure Processes

If you find a security vulnerability or any security related issues, please do not create a public issue. Instead, send your report to fj-lsoft-fosci@dl.jp.fujitsu.com. Please provide as much information as possible, so we can react quickly.

Public Disclosure Processes

If you know of a publicly disclosed security vulnerability please IMMEDIATELY email fj-lsoft-fosci@dl.jp.fujitsu.com so that we may start the patch and release. Please provide as much information as possible, so we can react quickly.

Patch and Release Team

When a vulnerability comes in and is acknowledged, a team - including maintainers of the ansible-collection-for-fos project affected - will assembled to patch the vulnerability, release an update, and publish the vulnerability disclosure.