Skip to content

Commit 1382853

Browse files
committed
minor wording, added mention of FIPS
1 parent 3604e4b commit 1382853

File tree

1 file changed

+6
-3
lines changed

1 file changed

+6
-3
lines changed

Diff for: SECURITY.md

+6-3
Original file line numberDiff line numberDiff line change
@@ -1,14 +1,17 @@
11
# Security Policy
22

33
## Reporting a Vulnerability
4+
45
If you think that you have found a security vulnerability, please report it to this email address: [[email protected]](mailto:[email protected])
56

67
Describe the issue including all details, for example:
78
* Short summary of the problem
89
* Steps to reproduce
9-
* Affected product versions
10+
* Affected API versions
1011
* Logs if available
1112

12-
The Keyfactor team will send a response indicating the next steps in handling your report. You may be asked to provide additional information or guidance.
13+
The Bouncy Castle team will send a response indicating the next steps in handling your report. You may be asked to provide additional information or guidance.
14+
15+
If the issue is confirmed as a vulnerability, we will open a Security Advisory and acknowledge your contributions as part of it. Optionally, you can have your name and contact information listed in [Contributors](https://www.bouncycastle.org/contributors.html) as well.
1316

14-
If the issue is confirmed as a vulnerability, we will open a Security Advisory and acknowledge your contributions as part of it. Optionally, you can have your name and contact information listed in [Contributors](https://www.bouncycastle.org/contributors.html).
17+
Please note we endeavor to issue patched releases that deal with security issues as soon as they are made known to us, ideally prior to issuing a Security Advisory where otherwise possible. In some cases, particularly if it relates to a FIPS release, delays due to external processes may delay the issuing of a Security Advisory.

0 commit comments

Comments
 (0)