Skip to content

Commit f25681b

Browse files
authored
Create SECURITY.md for security reporting guidelines
Added a security policy for reporting issues.
1 parent 3c0fabd commit f25681b

1 file changed

Lines changed: 25 additions & 0 deletions

File tree

SECURITY.md

Lines changed: 25 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,25 @@
1+
<!--
2+
Copyright 2026 UCP Authors
3+
4+
Licensed under the Apache License, Version 2.0 (the "License");
5+
you may not use this file except in compliance with the License.
6+
You may obtain a copy of the License at
7+
8+
http://www.apache.org/licenses/LICENSE-2.0
9+
10+
Unless required by applicable law or agreed to in writing, software
11+
distributed under the License is distributed on an "AS IS" BASIS,
12+
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13+
See the License for the specific language governing permissions and
14+
limitations under the License.
15+
-->
16+
17+
# Security Policy
18+
19+
To report a security issue, please use [g.co/vulnz](https://g.co/vulnz).
20+
21+
The Google Security Team will respond within 5 working days of your report on
22+
g.co/vulnz.
23+
24+
We use g.co/vulnz for our intake, and do coordination and disclosure here using
25+
GitHub Security Advisory to privately discuss and fix the issue.

0 commit comments

Comments
 (0)