redis-doc
redis-doc copied to clipboard
Formally specify how to issue a security report
Current text reads:
"For security-related contacts, open an issue on GitHub, or when you feel it is really important to preserve the security of the communication, use the GPG key at the end of this document."
Can we confirm that this is the official process?
More or less yeah, we also have more information here: https://github.com/redis/redis/security/policy. Seems like they should be merged a bit since we don't have the GPG key linked from the policy.
I believe we do have that key somewhere - @yossigo please confirm.
@itamarhaber We do, you should as well.
Got it.
Thanks, @madolson, @yossigo, and @itamarhaber. I'll integrate this into the docs with a new PR.
key is here https://redis.io/docs/management/security/ closing as complete, please re-open if needed