From: dotnet-bot Date: Wed, 26 Feb 2020 01:46:08 +0000 (+0000) Subject: Add SECURITY.md X-Git-Tag: submit/tizen_5.5/20200504.045052~11^2^2~96 X-Git-Url: http://review.tizen.org/git/?a=commitdiff_plain;h=5a4d0d53703385d1bd41798c2f61ca620ae96bc8;p=platform%2Fcore%2Fdotnet%2Fdiagnostics.git Add SECURITY.md --- diff --git a/SECURITY.md b/SECURITY.md new file mode 100644 index 000000000..030ac0c06 --- /dev/null +++ b/SECURITY.md @@ -0,0 +1,15 @@ +# Security Policy + +## Supported Versions + +The .NET Core and ASP.NET Core support policy, including supported versions can be found at the [.NET Core Support Policy Page](https://dotnet.microsoft.com/platform/support/policy/dotnet-core). + +## Reporting a Vulnerability + +Security issues and bugs should be reported privately to the Microsoft Security Response Center (MSRC), either by emailing secure@microsoft.com or via the portal at https://msrc.microsoft.com. +You should receive a response within 24 hours. If for some reason you do not, please follow up via email to ensure we received your +original message. Further information, including the MSRC PGP key, can be found in the [MSRC Report an Issue FAQ](https://www.microsoft.com/en-us/msrc/faqs-report-an-issue). + +Reports via MSRC may qualify for the .NET Core Bug Bounty. Details of the .NET Core Bug Bounty including terms and conditions are at [https://aka.ms/corebounty](https://aka.ms/corebounty). + +Please do not open issues for anything you think might have a security implication. \ No newline at end of file