Skip to content

Commit d92d9f2

Browse files
committed
docs(security): soften response timelines for single-maintainer context
- Reworded “Our Process & Timelines” for flexibility and clarity - Removed strict SLA language, keeping tone transparent yet realistic
1 parent 9ad8183 commit d92d9f2

File tree

1 file changed

+6
-6
lines changed

1 file changed

+6
-6
lines changed

SECURITY.md

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -40,14 +40,14 @@ Please include:
4040

4141
## Our Process & Timelines
4242

43-
We aim to respond quickly and keep you informed throughout.
43+
We aim to respond in a timely and transparent way, keeping you informed throughout key stages.
4444

45-
- **Acknowledgement:** within **72 hours**.
46-
- **Triage & Reproduction:** within **5 business days**.
47-
- **Fix Plan:** within **10 business days** for High/Critical; otherwise as scheduled.
48-
- **Release:** a patched version will be published; we may coordinate an embargoed release for impactful issues.
45+
- **Acknowledgement:** typically within a few days after receiving a report.
46+
- **Triage & Reproduction:** investigated as soon as practical based on severity.
47+
- **Fix Planning:** prioritized according to impact and complexity.
48+
- **Release:** patches are published once validated; coordinated disclosure may be used for sensitive issues.
4949

50-
We’ll keep you updated at major milestones (triage result, fix readiness, release timing).
50+
We’ll keep reporters informed at major milestones such as triage results, fix readiness, and release timing.
5151

5252
---
5353

0 commit comments

Comments
 (0)