Skip to content

Security: finos/architecture-as-code

SECURITY.md

Security Policy

This project supports responsible disclosure of security vulnerabilities and adheres to the FINOS Security Vulnerabilities Responsible Disclosure Policy. If you believe you have found a security vulnerability in this project, we encourage and appreciate your report. Please report it privately using one of the methods below — do not open a public GitHub Issue or otherwise disclose it publicly.

Reporting a Vulnerability

Vulnerability Process

  1. Report the vulnerability privately using one of the methods above.
  2. The project team will acknowledge receipt, triage the report, and — if confirmed — work with you to investigate and develop a fix.
  3. Once a fix is available, it will be released and the vulnerability will be publicly disclosed in accordance with the FINOS Security Vulnerabilities Responsible Disclosure Policy.

Thank you for helping keep FINOS projects and their users secure.

There aren't any published security advisories