Skip to content

docs: add SECURITY.md community health file#3

Open
kitsuyui wants to merge 1 commit into
mainfrom
fix/audit-secret-scanning-disabled-001
Open

docs: add SECURITY.md community health file#3
kitsuyui wants to merge 1 commit into
mainfrom
fix/audit-secret-scanning-disabled-001

Conversation

@kitsuyui

Copy link
Copy Markdown
Member

Changes

Add SECURITY.md as a community health file for the gitignore-in organization.

Why

gitignore-in/.github serves as the source of default community health files
for all repositories in the organization. Adding SECURITY.md documents
the vulnerability reporting process and the organization's security posture,
including that secret scanning and push protection are enabled on all repositories.

Scope

  • SECURITY.md: New file documenting the security policy and reporting process.
  • No changes to existing files.

Verification

  • SECURITY.md follows the same structure as other community health files in the organization.
  • Secret scanning and push protection are confirmed enabled on the repository.

Trade-offs

  • The security features section assumes org-wide settings remain in effect. If settings change, the file should be updated to reflect the current state.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant