Skip to content

Commit 5583f2a

Browse files
committed
Update SECURITY.md to reflect bug bounty program
1 parent c8b8a75 commit 5583f2a

1 file changed

Lines changed: 5 additions & 2 deletions

File tree

SECURITY.md

Lines changed: 5 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,8 @@
11
# Reporting and Fixing Security Issues
22

3-
Please report all security issues to the LaunchDarkly security team by submitting a bug bounty report to our [HackerOne program](https://hackerone.com/launchdarkly?type=team). LaunchDarkly will triage and address all valid security issues following the response targets defined in our program policy. Valid security issues may be eligible for a bounty.
3+
**Do not open Issues or Pull Requests for security issues.**
4+
This will make potential issues publicly visible before LaunchDarkly's Security Team can address them, which could lead to a compromise of the platform and negatively impact our customers.
45

5-
Please do not open issues or pull requests for security issues. This makes the problem immediately visible to everyone, including potentially malicious actors.
6+
Security issues must be reported through our [Bug Bounty program](https://bugcrowd.com/engagements/launchdarkly-mbb-og), following the program policy, for triage and remediation by the LaunchDarkly Security Team. Valid security issues may be eligible for a bounty.
7+
8+
Please do not attempt to directly contact members of LaunchDarkly staff.

0 commit comments

Comments
 (0)