summaryrefslogtreecommitdiff
path: root/.github/SECURITY.md
diff options
context:
space:
mode:
authorMatthew Holt <mholt@users.noreply.github.com>2020-11-12 12:36:37 -0700
committerMatthew Holt <mholt@users.noreply.github.com>2020-11-12 15:03:07 -0700
commit3db60e6cbace3c03b7fe6cbaf8fd49fd42fde5b2 (patch)
treee6e5ff4fac224985487857a37998f7012cd2d96d /.github/SECURITY.md
parent7c28ecb5f487e24a982a10cb5c5a77dc03c38db1 (diff)
Update contact info
Diffstat (limited to '.github/SECURITY.md')
-rw-r--r--.github/SECURITY.md4
1 files changed, 2 insertions, 2 deletions
diff --git a/.github/SECURITY.md b/.github/SECURITY.md
index 5fa5fc1..9f940f3 100644
--- a/.github/SECURITY.md
+++ b/.github/SECURITY.md
@@ -16,12 +16,12 @@ Please note that we consider publicly-registered domain names to be public infor
## Reporting a Vulnerability
-Please email Matt Holt (the author) directly: matt [at] ardanlabs [dot com].
+Please email Matt Holt (the author) directly: matt [at] lightcodelabs [dot com].
We'll need enough information to verify the bug and make a patch. It will speed things up if you suggest a working patch, such as a code diff, and explain why and how it works. Reports that are not actionable, do not contain enough information, are too pushy/demanding, or are not able to convince us that it is a viable and practical attack on the web server itself may be deferred to a later time or possibly ignored, resources permitting. Priority will be given to credible, responsible reports that are constructive, specific, and actionable. Thank you for understanding.
Please also understand that due to our nature as an open source project, we do not have a budget to award security bounties. We can only thank you.
-If your report is valid and a patch is released, we will not reveal your identity by default. If you wish to be credited, please give us the name to use.
+If your report is valid and a patch is released, we will not reveal your identity by default. If you wish to be credited, please give us the name to use and/or your GitHub username. If you don't provide this we can't credit you.
Thanks for responsibly helping Caddy&mdash;and thousands of websites&mdash;be more secure!