From f92480b44bf932837687e2dfe7d50f456785f288 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Cl=C3=A9ment=20Michaud?= Date: Fri, 24 Apr 2020 02:29:30 +0200 Subject: [PATCH] [DOCS] Add SECURITY.md and update README.md. (#906) * Add SECURITY.md and update README.md. * Align README.md and SECURITY.md with the security documentation. --- README.md | 8 +++++--- SECURITY.md | 13 +++++++++++++ 2 files changed, 18 insertions(+), 3 deletions(-) create mode 100644 SECURITY.md diff --git a/README.md b/README.md index ab052e3cf..9509050be 100644 --- a/README.md +++ b/README.md @@ -99,15 +99,17 @@ This guide will show you how to deploy it on bare metal as well as on ## Security -Security is taken very seriously here, therefore we follow the rule of responsible -disclosure and we encourage you to do so. +Authelia takes security very seriously. We follow the rule of +[responsible disclosure](https://en.wikipedia.org/wiki/Responsible_disclosure), and we +encourage the community to as well. Would you like to report any vulnerability discovered in Authelia, please first contact **clems4ever** on [Matrix](https://riot.im/app/#/room/#authelia:matrix.org) or by [email](mailto:clement.michaud34@gmail.com). For details about security measures implemented in Authelia, please follow -this [link](https://docs.authelia.com/security/measures.html). +this [link](https://docs.authelia.com/security/measures.html) and for reading about +the threat model follow this [link](https://docs.authelia.com/security/threat-model.html). ## Breaking changes diff --git a/SECURITY.md b/SECURITY.md new file mode 100644 index 000000000..fede542d7 --- /dev/null +++ b/SECURITY.md @@ -0,0 +1,13 @@ +# Security + +Authelia takes security very seriously. We follow the rule of +[responsible disclosure](https://en.wikipedia.org/wiki/Responsible_disclosure), and we +encourage the community to as well. + +Would you like to report any vulnerability discovered in Authelia, please first contact +**clems4ever** on [Matrix](https://riot.im/app/#/room/#authelia:matrix.org) or by +[email](mailto:clement.michaud34@gmail.com). + +For details about security measures implemented in Authelia, please follow +this [link](https://docs.authelia.com/security/measures.html) and for reading about +the threat model follow this [link](https://docs.authelia.com/security/threat-model.html).