Skip to content

chore: add SECURITY.md with vulnerability disclosure policy#4

Merged
SUP2Ak merged 1 commit into
mainfrom
chore/add-security-policy
Apr 25, 2026
Merged

chore: add SECURITY.md with vulnerability disclosure policy#4
SUP2Ak merged 1 commit into
mainfrom
chore/add-security-policy

Conversation

@SUP2Ak

@SUP2Ak SUP2Ak commented Apr 25, 2026

Copy link
Copy Markdown
Owner

Adds a dedicated SECURITY.md to satisfy socket.dev's policy status
check and GitHub's security tab. Directs reporters to GitHub's private
vulnerability reporting instead of a public issue.

No code change, no API change. SECURITY.md is not in the npm bundle
— socket.dev reads it directly from the repository.

Checklist

  • No engine files touched — no bench delta needed.
  • No tests needed.

Provides a dedicated security policy for socket.dev policy checks
and GitHub's security tab. Directs reporters to GitHub's private
vulnerability reporting rather than a public issue.
@SUP2Ak SUP2Ak merged commit cc680ab into main Apr 25, 2026
1 check passed
@SUP2Ak SUP2Ak deleted the chore/add-security-policy branch April 25, 2026 11:25
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant