From c211c3dd8dddee529dcabfe67b89839890ec1abf Mon Sep 17 00:00:00 2001 From: decalage2 Date: Thu, 22 May 2025 10:20:42 +0200 Subject: [PATCH] doc: updated SECURITY with a link to reporting via Github --- SECURITY.md | 9 ++++++--- 1 file changed, 6 insertions(+), 3 deletions(-) diff --git a/SECURITY.md b/SECURITY.md index 6d816df..6ceddee 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -15,12 +15,15 @@ currently being supported with security updates: ## Reporting a Vulnerability If you would like to report a vulnerability affecting the oletools project, -please send a first email to decalage at laposte dot net, without giving -technical details. You will then be provided with a GPG key to send +you may use the link "[Report a vulnerability](https://github.com/decalage2/oletools/security/advisories/new)" +on Github. + +If you prefer not to use Github, please send a first email to decalage at laposte dot net, without giving +technical details. You will then be provided with a GPG public key to send encrypted emails. Alternatively you may also contact me via X/Twitter, Mastodon or BlueSky -using private messages (see https://linktr.ee/decalage). +using private messages (see https://linktr.ee/decalage) to get the GPG key. Please note that oletools is a non-commercial open-source project maintained on my spare time. I will do my best to answer in due time and fix -- libgit2 0.21.4