|
| 1 | +# Security Policy |
| 2 | + |
| 3 | +Einride welcomes feedback from security researchers and the general public to |
| 4 | +help improve our security. If you believe you have discovered a vulnerability, |
| 5 | +privacy issue, exposed data, or other security issues in relation to this |
| 6 | +project, we want to hear from you. This policy outlines steps for reporting |
| 7 | +security issues to us, what we expect, and what you can expect from us. |
| 8 | + |
| 9 | +## Supported versions |
| 10 | + |
| 11 | +We release patches for security issues according to semantic versioning. This |
| 12 | +project is currently unstable (v0.x) and only the latest version will receive |
| 13 | +security patches. |
| 14 | + |
| 15 | +## Reporting a vulnerability |
| 16 | + |
| 17 | +Please do not report security vulnerabilities through public issues, |
| 18 | +discussions, or change requests. |
| 19 | + |
| 20 | +Please report security issues via [[email protected]][email]. Provide |
| 21 | +all relevant information, including steps to reproduce the issue, any affected |
| 22 | +versions, and known mitigations. The more details you provide, the easier it |
| 23 | +will be for us to triage and fix the issue. You will receive a response from us |
| 24 | +within 2 business days. If the issue is confirmed, a patch will be released as |
| 25 | +soon as possible. |
| 26 | + |
| 27 | +For more information, or security issues not relating to open source code, |
| 28 | +please consult our [Vulnerability Disclosure Policy][vdp]. |
| 29 | + |
| 30 | +## Preferred languages |
| 31 | + |
| 32 | +English is our preferred language of communication. |
| 33 | + |
| 34 | +## Contributions and recognition |
| 35 | + |
| 36 | +We appreciate every contribution and will do our best to publicly |
| 37 | +[acknowledge][acknowledgments] your contributions. |
| 38 | + |
| 39 | +[acknowledgments]: https://einride.tech/security-acknowledgments.txt |
| 40 | + |
| 41 | +[vdp]: https://www.einride.tech/vulnerability-disclosure-policy |
0 commit comments