mirror of
https://github.com/argoproj/argo-cd
synced 2026-04-21 17:07:16 +00:00
docs: Revise vulnerability reporting and remove bounty details (#27212)
Signed-off-by: Michael Crenshaw <350466+crenshaw-dev@users.noreply.github.com>
This commit is contained in:
parent
047c0ae734
commit
21b826e204
1 changed files with 1 additions and 18 deletions
19
SECURITY.md
19
SECURITY.md
|
|
@ -80,24 +80,7 @@ We will publish security advisories using the
|
||||||
feature to keep our community well-informed, and will credit you for your
|
feature to keep our community well-informed, and will credit you for your
|
||||||
findings (unless you prefer to stay anonymous, of course).
|
findings (unless you prefer to stay anonymous, of course).
|
||||||
|
|
||||||
There are two ways to report a vulnerability to the Argo CD team:
|
To report a vulnerability to the Argo CD team a draft GitHub security advisory: https://github.com/argoproj/argo-cd/security/advisories/new
|
||||||
|
|
||||||
* By opening a draft GitHub security advisory: https://github.com/argoproj/argo-cd/security/advisories/new
|
|
||||||
* By e-mail to the following address: cncf-argo-security@lists.cncf.io
|
|
||||||
|
|
||||||
## Internet Bug Bounty collaboration
|
|
||||||
|
|
||||||
We're happy to announce that the Argo project is collaborating with the great
|
|
||||||
folks over at
|
|
||||||
[Hacker One](https://hackerone.com/) and their
|
|
||||||
[Internet Bug Bounty program](https://hackerone.com/ibb)
|
|
||||||
to reward the awesome people who find security vulnerabilities in the four
|
|
||||||
main Argo projects (CD, Events, Rollouts and Workflows) and then work with
|
|
||||||
us to fix and disclose them in a responsible manner.
|
|
||||||
|
|
||||||
If you report a vulnerability to us as outlined in this security policy, we
|
|
||||||
will work together with you to find out whether your finding is eligible for
|
|
||||||
claiming a bounty, and also on how to claim it.
|
|
||||||
|
|
||||||
## Securing your Argo CD Instance
|
## Securing your Argo CD Instance
|
||||||
|
|
||||||
|
|
|
||||||
Loading…
Reference in a new issue