Skip to content

SECURITY.md

Stéphane Brunner edited this page Mar 16, 2024 · 5 revisions

We use a SECURITY.md with some constraints, it should contain a table with the column:

  • Version the name of the version
  • Alternate Tag an optional column that used when we publish a docker image to publish it on more than one tag, it a tag on this column is also present in the Version it's to give an and of support date of the moving tag.
  • Supported Until the end of support date, can also be:
    • To be defined used when we want to set the end of support related to another project, that's not released yet.
    • Best effort used when the support is ended, but we continue to apply the CVE, but the support can end from one day to the next.
    • Uncupported used when there is no more support, security scan on this version.
Clone this wiki locally