Skip to content

Commit c7d76d6

Browse files
committed
Change security policy to point to Github security advisories.
1 parent 378ccf8 commit c7d76d6

1 file changed

Lines changed: 6 additions & 9 deletions

File tree

‎SECURITY.md‎

Lines changed: 6 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -5,16 +5,13 @@ privately. **Do not disclose it as a public issue.** This gives us time to work
55
to fix the issue before public exposure, reducing the chance that the exploit will be
66
used before a patch is released.
77

8-
Please submit the report through the
9-
[Launchpad bug-tracker](https://bugs.launchpad.net/lxml/+filebug) (you may need to
10-
create an account and log in). Make sure to mark the "🔒 This bug is a security
11-
vulnerability" checkbox before submitting the report. This ensures the bug can only be
12-
seen by the security group.
8+
Please submit the report as
9+
[Github draft security advisory](https://github.com/lxml/lxml/security/advisories).
1310

1411
Please provide the following information in your report:
1512

16-
- A description of the vulnerability and its impact
17-
- How to reproduce the issue
13+
- A description of the vulnerability and its impact.
14+
- How to reproduce the issue.
1815

19-
This project is maintained by a few maintainers on a reasonable-effort basis. As such,
20-
we ask that you give us 90 days to work on a fix before public exposure.
16+
This project is maintained by a few maintainers on a reasonable-effort basis.
17+
As such, we ask that you give us 90 days to work on a fix before public exposure.

0 commit comments

Comments
 (0)