Skip to content

Commit 1f40b1c

Browse files
authored
Merge pull request #210 from quickwit-oss/cose-sync-security-policy-20260813224353
chore: sync security-policy
2 parents e9fd281 + 0328fd3 commit 1f40b1c

1 file changed

Lines changed: 23 additions & 0 deletions

File tree

‎SECURITY.md‎

Lines changed: 23 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,23 @@
1+
# Security Policy
2+
3+
## Vulnerability Reporting
4+
5+
We deeply appreciate any effort to discover and disclose security vulnerabilities responsibly.
6+
7+
### Quickwit Datasource CI
8+
9+
If you would like to report a vulnerability in Quickwit Datasource's CI or have security concerns with other Datadog products, please email [security@datadoghq.com](mailto:security@datadoghq.com).
10+
11+
We take all disclosures seriously and will do our best to respond promptly, verify the vulnerability, and take the necessary steps to fix it. After our initial reply, we will periodically update you on the status of the fix.
12+
13+
### Other Reports
14+
15+
Quickwit Datasource is an open source project. Users are responsible for managing the environments where they deploy or integrate it. Vulnerabilities in those environments could potentially be exploited by malicious actors who already have access to the user's infrastructure. We encourage responsible disclosure by emailing [security@datadoghq.com](mailto:security@datadoghq.com) so that risks can be properly assessed and mitigated.
16+
17+
To help us investigate your report, please include any of the following:
18+
19+
- A proof of concept
20+
- Any tools used, including their versions
21+
- Any relevant output
22+
23+
Do not include credentials, secrets, or other sensitive information in a public GitHub issue.

0 commit comments

Comments
 (0)