You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Thanks for this checklist @haydentherapper ! I just happened to be looking into creating a SECURITY.md file for us. Do you know if OpenSSF provides a default SECURITY.md template we can use? I haven't been able to find one.
This will send a report to the repo's admins. The only issue is if we go with what I suggested about having only the SC members be admins while repository owners are maintainers, then a SC member must get involved to accept the report.
As part of needing an org-wide security.md, let's create a landing page for the organization.
More info: https://docs.github.com/en/organizations/collaborating-with-groups-in-organizations/customizing-your-organizations-profile, https://docs.github.com/en/communities/setting-up-your-project-for-healthy-contributions/creating-a-default-community-health-file
What we need to do:
profile/README.md
SECURITY.md
Some nice-to-haves:
CONTRIBUTING.md
CODE_OF_CONDUCT.md
GOVERNANCE.md
with a link to our governance repo (or maybe remove that governance repo in favor of this repo?)The text was updated successfully, but these errors were encountered: