Browse Source

Merge branch 'master' into master

pull/32/head
Masoud Shokohi 3 years ago
committed by GitHub
parent
commit
975764ee1b
No known key found for this signature in database GPG Key ID: 4AEE18F83AFDEB23
  1. 6
      SECURITY.md

6
SECURITY.md

@ -1,7 +1,11 @@
# GitHub Security Policy # GitHub Security Policy
Software security researchers are increasingly engaging with Internet companies to hunt down vulnerabilities. Our bounty program gives a tip of the hat to these researchers and provides rewards of $30,000 or more for critical vulnerabilities. GitHub's [Bug Bounty program](https://bounty.github.com) rewards researchers for discovering security vulnerabilities in a number of repositories. The full list of projects that are eligible for rewards are [available on our Bug Bounty site](https://bounty.github.com/#scope).
If you’ve found a vulnerability, [submit it here](https://hackerone.com/github). If you’ve found a vulnerability, [submit it here](https://hackerone.com/github).
You can find useful information in our [rules](https://bounty.github.com/#rules), [scope](https://bounty.github.com/#scope), [targets](https://bounty.github.com/#scope) and [FAQ](https://bounty.github.com/#faqs). You can find useful information in our [rules](https://bounty.github.com/#rules), [scope](https://bounty.github.com/#scope), [targets](https://bounty.github.com/#scope) and [FAQ](https://bounty.github.com/#faqs).
If the repository is eligible for rewards, you can submit a report via [HackerOne](https://hackerone.com/github). You can find more useful information in our [rules](https://bounty.github.com/#rules) and [FAQ](https://bounty.github.com/#faqs).
For repositories not covered by the Bug Bounty program, please open an issue.

Loading…
Cancel
Save