Skip to content

'Report Security Incident' documentation #923

Description

@JordanJordanov

What would you like to be added:

  • Create a dedicated page for reporting security incident
  • Update https://gardener.cloud/docs/security-and-compliance/
    • remove Vasu and Philipp
    • remove the ',' between names and github accounts
    • remove all occurences of gardener-security@googlegroups.com, we have to use neonephos mailing lists here (contact Eva for more details)
  • Add FAQ for reporting a security issue (with a refernce towards the new page) -> it should be easy (obvious) to find how security incidents are reported
  • Oce we have the bug bounty program approved (to document how this one is to be used in the reporting security incident page) -> contact here is Donka (let's not wait for this one and proceed with the other points)

Why is this needed:

Metadata

Metadata

Assignees

Labels

kind/enhancementEnhancement, improvement, extensionlifecycle/staleDenotes an issue or PR has remained open with no activity and has become stale.

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions