FazBrowse GitHub Viewer | Trending |
URL:
| Home
Tools: [Download Repo ZIP]   [Original HTTPS Page]

Add SECURITY.md, referencing the GitPython one by EliahKagan · Pull Request #59 · gitpython-developers/smmap · GitHub

This repository was archived by the owner on Jul 26, 2026. It is now read-only.
/ smmap Public archive

Add SECURITY.md, referencing the GitPython one - #59

Merged
Byron merged 1 commit into
gitpython-developers:masterfrom
EliahKagan:security
Jan 5, 2025
Merged

Add SECURITY.md, referencing the GitPython one#59
Byron merged 1 commit into
gitpython-developers:masterfrom
EliahKagan:security

Conversation

EliahKagan commented Jan 5, 2025
edited
Loading

Copy link
Copy Markdown
Member

This will fix gitpython-developers/gitdb#116, when taken together with related forthcoming PRs in the gitdb and GitPython repositories.

I don't know if you want to include information about the specific versions that are supported. Readers may infer this from a combination of the way it works as described in the GitPython policy and what versions of smmap exist, I am not sure. I kept the file minimal for now.

EliahKagan added a commit to EliahKagan/gitdb that referenced this pull request Jan 5, 2025
Along with gitpython-developers/smmap#59
and a forthcoming related PR in GitPython, this will fix gitpython-developers#116.
EliahKagan added a commit to EliahKagan/GitPython that referenced this pull request Jan 5, 2025
This expands `SECURITY.md` to affirm the claims in the new
`SECURITY.md` files in gitdb and smmap that vulnerabilities found
in them can be reported in the GitPython repository with the same
link as one would use to report a GitPython vulnerability, as well
as to note how the distinction between affected package can be
specified when it is known at the time a vulnerability is reported.

Along with gitpython-developers/smmap#59
and gitpython-developers/gitdb#117, this
fixes gitpython-developers/gitdb#116.
EliahKagan added a commit to EliahKagan/GitPython that referenced this pull request Jan 5, 2025
This expands `SECURITY.md` to affirm the claims in the new
`SECURITY.md` files in gitdb and smmap that vulnerabilities found
in them can be reported in the GitPython repository with the same
link as one would use to report a GitPython vulnerability, as well
as to note how the distinction between affected package can be
specified when it is known at the time a vulnerability is reported.

Along with gitpython-developers/smmap#59
and gitpython-developers/gitdb#117, this
fixes gitpython-developers/gitdb#116.
EliahKagan added a commit to EliahKagan/GitPython that referenced this pull request Jan 5, 2025
This expands `SECURITY.md` to affirm the claims in the new
`SECURITY.md` files in gitdb and smmap that vulnerabilities found
in them can be reported in the GitPython repository with the same
link as one would use to report a GitPython vulnerability, as well
as to note how the distinction between affected package can be
specified when it is known at the time a vulnerability is reported.

Along with gitpython-developers/smmap#59
and gitpython-developers/gitdb#117, this
fixes gitpython-developers/gitdb#116.

Byron left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Choose a reason Spam Abuse Off Topic Outdated Duplicate Resolved Low Quality

Thank you, minimal is good.

Byron merged commit 8f82e6c into gitpython-developers:master Jan 5, 2025
EliahKagan deleted the security branch January 5, 2025 16:40
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters. Learn more about bidirectional Unicode characters
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Development

Successfully merging this pull request may close these issues.

Unclear what security policy would apply to gitdb and smmap vulnerabilities

2 participants


Back | FazBrowse Home | New Git URL