1
0
Fork 0
mirror of https://github.com/mozilla/pdf.js.git synced 2025-04-19 06:38:07 +02:00

Include a security policy for PDF.js

This makes sure that security researchers can find the required
information for reporting security vulnerabilities in a standardized
manner across GitHub repositories. Please refer to
https://docs.github.com/en/code-security/getting-started/adding-a-security-policy-to-your-repository
for more information.
This commit is contained in:
Tim van der Meij 2024-06-21 16:43:52 +02:00
parent 6784124a74
commit 2beae7aad6
No known key found for this signature in database
GPG key ID: 8C3FD2925A5F2762
2 changed files with 13 additions and 0 deletions

13
.github/SECURITY.md vendored Normal file
View file

@ -0,0 +1,13 @@
# Security policy
Mozilla takes the security of our software seriously. If you believe you have found a security vulnerability in PDF.js, please report it to us as described below.
## Reporting security vulnerabilities
**Please don't report security vulnerabilities through public GitHub issues.**
Instead, please report security vulnerabilities in [Bugzilla](https://bugzilla.mozilla.org/enter_bug.cgi?product=Firefox&component=PDF%20Viewer&groups=firefox-core-security) and make sure that the checkbox in the "Security" section is checked so the required access controls are automatically configured:
![Security checkbox](security.png)
The Mozilla security team will process the bug as described in [Mozilla's security bugs policy](https://www.mozilla.org/en-US/about/governance/policies/security-group/bugs).

BIN
.github/security.png vendored Normal file

Binary file not shown.

After

Width:  |  Height:  |  Size: 11 KiB