aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--SECURITY.md21
1 files changed, 21 insertions, 0 deletions
diff --git a/SECURITY.md b/SECURITY.md
new file mode 100644
index 00000000..de2b983a
--- /dev/null
+++ b/SECURITY.md
@@ -0,0 +1,21 @@
1# Security Policy
2
3## Supported Versions
4
5The LuaRocks project supports the _latest version_ of the tool
6for bugfixes and security updates. In other words, if an
7issue is reported and we produce a fix, it will appear in a subsequent
8patch version (x.y.Z) of the tool, but we do not backport fixes
9to previous minor (x.Y.z) or major (X.y.z) versions.
10
11## Reporting a Vulnerability
12
13To report a vulnerability on the LuaRocks CLI tool, email
14Hisham Muhammad at hisham@luarocks.org.
15
16To report a vulnerability on the https://luarocks.org website,
17email Leaf Corcoran at leafot@gmail.com.
18
19We will acknowledge your contact as soon as the message is
20received, then assess the vulnerability and get back to you
21with further feedback once analysis on our end is done.