Skip to content

Commit 04c4f35

Browse files
committed
Add SECURITY.md
1 parent 4a9de93 commit 04c4f35

File tree

1 file changed

+20
-0
lines changed

1 file changed

+20
-0
lines changed

SECURITY.md

+20
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,20 @@
1+
# Security Policy
2+
3+
## Supported Versions
4+
5+
Only the latest release is supported with security updates.
6+
7+
## Reporting a Vulnerability
8+
9+
If there are any vulnerabilities in **Cairo extension for Visual Studio Code**, don't hesitate to
10+
_report them_.
11+
12+
1. If you found a vulnerability in **Cairo language/compiler**, please consult its
13+
own [security policy](https://github.com/starkware-libs/cairo/security/policy).
14+
2. If you found a vulnerability in **Cairo extension for Visual Studio Code**, please consult its
15+
own [security policy](https://github.com/software-mansion/vscode-cairo/blob/main/SECURITY.md).
16+
3. Use the GitHub Security site for reporting vulnerabilities. You can report
17+
one [here](https://github.com/software-mansion/cairols/security/advisories/new).
18+
4. Please **do not disclose the vulnerability publicly** until a fix is released!
19+
5. Once we have either a) published a fix or b) declined to address the vulnerability for whatever
20+
reason, you are free to publicly disclose it.

0 commit comments

Comments
 (0)