Skip to content

Vulnerebility report support #19

@GlancingMind

Description

@GlancingMind

Vulnerabilities and Exploits are generally not disclosed over a public
accessible bug tracker. Create a hint for users, to not report such Issues via
'new Issue' and instead give instructions to send an email or fill in a special
form, which will prepare an email to be send either by git-bug or the users
mail client.
NOTE: It is good practice to encrypt such sensitive mails. May use
OpenPGP.js to encrypt the content of the text-field
with the maintainers given public key.
NOTE: Git-Bug might be able to send emails via git-send-mail, but this might
become to complex. Instead create a link to open the users email client or
display the encrypted content, to copy it over to some webmail-interface.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Projects

    No projects

    Milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions