forked from git-bug/git-bug
-
Notifications
You must be signed in to change notification settings - Fork 0
Open
Labels
Milestone
Description
Vulnerabilities and Exploits are generally not disclosed over a public
accessible bug tracker. Create a hint for users, to not report such Issues via
'new Issue' and instead give instructions to send an email or fill in a special
form, which will prepare an email to be send either by git-bug or the users
mail client.
NOTE: It is good practice to encrypt such sensitive mails. May use
OpenPGP.js to encrypt the content of the text-field
with the maintainers given public key.
NOTE: Git-Bug might be able to send emails via git-send-mail, but this might
become to complex. Instead create a link to open the users email client or
display the encrypted content, to copy it over to some webmail-interface.