helmfile icon indicating copy to clipboard operation
helmfile copied to clipboard

Create SECURITY.md

Open JamieSlome opened this issue 2 years ago • 3 comments

Hello 👋

I run a security community that finds and fixes vulnerabilities in OSS. A researcher (@arshadkazmi42) has found a potential issue, which I would be eager to share with you.

Could you add a SECURITY.md file with an e-mail address for me to send further details to? GitHub recommends a security policy to ensure issues are responsibly disclosed, and it would help direct researchers in the future.

Looking forward to hearing from you 👍

(cc @huntr-helper)

JamieSlome avatar Jun 04 '22 16:06 JamieSlome

@JamieSlome Hey! Thanks for reporting. Please refer to https://github.com/helmfile/helmfile/pull/135 (Also note that we've moved to helmfile/helmfile

mumoshu avatar Jun 05 '22 07:06 mumoshu

@mumoshu - thanks for your response and diligence 👍

@arshadkazmi42 - are you able to re-submit your report against helmfile/helmfile?

JamieSlome avatar Jun 06 '22 10:06 JamieSlome

@JamieSlome I have verified, the issue does not exists in helmfile/helmfile

arshadkazmi42 avatar Jun 06 '22 11:06 arshadkazmi42