mirror of
https://github.com/Significant-Gravitas/AutoGPT.git
synced 2026-01-06 22:03:59 -05:00
docs(security): Update disclosure timeline (#9581)
<!-- Clearly explain the need for these changes: -->
Update the security.md based on some advice we got :)
### Changes 🏗️
- Adds an update time window and clarifies time spans
<!-- Concisely describe all of the changes made in this pull request:
-->
This commit is contained in:
@@ -20,6 +20,7 @@ Instead, please report them via:
|
|||||||
- Please provide detailed reports with reproducible steps
|
- Please provide detailed reports with reproducible steps
|
||||||
- Include the version/commit hash where you discovered the vulnerability
|
- Include the version/commit hash where you discovered the vulnerability
|
||||||
- Allow us a 90-day security fix window before any public disclosure
|
- Allow us a 90-day security fix window before any public disclosure
|
||||||
|
- After patch is released, allow 30 days for users to update before public disclosure (for a total of 120 days max between update time and fix time)
|
||||||
- Share any potential mitigations or workarounds if known
|
- Share any potential mitigations or workarounds if known
|
||||||
|
|
||||||
## Supported Versions
|
## Supported Versions
|
||||||
|
|||||||
Reference in New Issue
Block a user