MaintNotes: a bit more description on the security list
Junio C Hamano committed
Apr 29, 2016 at 15:03 UTC
dd9985bd6dca5602cb461c4b4987466fa2f31638
1 file changed
+10
-1
MaintNotes
+10
-1
@@ -89,7 +89,16 @@ hints.
89
90
If you think you found a security-sensitive issue and want to disclose
91
it to us without announcing it to wider public, please contact us at
92
-our security mailing list <git-security@googlegroups.com>.
92
+our security mailing list <git-security@googlegroups.com>. This is
93
+a closed list that is limited to people who need to know early about
94
+vulnerabilities, including:
95
+
96
+ - people triaging and fixing reported vulnerabilities
97
+ - people operating major git hosting sites with many users
98
+ - people packaging and distributing git to large numbers of people
99
+
100
+where these issues are discussed without risk of the information
101
+leaking out before we're ready to make public announcements.
102
103
104
* Repositories and documentation.