chore(docs): Update security disclosure docs (#3162)

This commit is contained in:
Hannah Cooper
2026-07-17 12:25:37 +12:00
committed by GitHub
parent 21741af659
commit 42b9ce87a1
+2 -2
View File
@@ -22,13 +22,11 @@ The Portainer team takes the security of our products seriously. If you believe
### Disclosure Process ### Disclosure Process
1. **Report**: You can report in one of two ways: 1. **Report**: You can report in one of two ways:
- **GitHub**: Use the **Report a vulnerability** button on the **Security** tab of this repository. - **GitHub**: Use the **Report a vulnerability** button on the **Security** tab of this repository.
- **Email**: Send your findings to security@portainer.io. - **Email**: Send your findings to security@portainer.io.
2. **Details**: To help us verify the issue, please include: 2. **Details**: To help us verify the issue, please include:
- A description of the vulnerability and its potential impact. - A description of the vulnerability and its potential impact.
- Step-by-step instructions to reproduce the issue (e.g. proof-of-concept code, scripts, or screenshots). - Step-by-step instructions to reproduce the issue (e.g. proof-of-concept code, scripts, or screenshots).
@@ -53,6 +51,8 @@ If you follow the responsible disclosure process, we will:
We will make every effort to promptly address any security weaknesses. Security advisories and fixes will be published through GitHub Security Advisories and other channels as needed. We will make every effort to promptly address any security weaknesses. Security advisories and fixes will be published through GitHub Security Advisories and other channels as needed.
Portainer does not operate a paid bug bounty program and does not offer monetary rewards for vulnerability reports. Portainer will not pursue legal action against good-faith research conducted in line with this policy.
Thank you for helping keep Portainer and our community secure. Thank you for helping keep Portainer and our community secure.
## Resources ## Resources