1 Star 0 Fork 0

ChinaLym / shoulder-lombok

加入 Gitee
与超过 1200万 开发者一起发现、参与优秀开源项目,私有仓库也完全免费 :)
免费加入
克隆/下载
SECURITY.md 1.54 KB
一键复制 编辑 原始数据 按行查看 历史
Roel Spilker 提交于 2019-12-19 20:44 . Fix h1

Security Policies and Procedures

Lombok only runs during compilation and is not required on your servers or in your application's distribution. Nevertheless, the Project Lombok team and community take all security bugs seriously.

Reporting a Bug

To report a security vulnerability, please follow the procedure described in the Tidelift security policy.

Alternatively, you can send us an email privately via info@projectlombok.org.

Disclosure Policy

When we receive a security bug report, it will be assigned a primary handler. This person will coordinate the fix and release process. In case this process requires additional resources beyond the scope of what the core contributors of Project Lombok can reasonably supply, we will inform the Tidelift security team for additional help and coordination. This process will involve the following steps:

  • Inventorize all affected versions along with the platform(s) that lombok runs on which are affected.
  • Audit code to find any potential similar problems.
  • Prepare fixes for all releases, push these out to all distribution channels including the maven central repo, and put in all due effort to get affected versions marked as affected.

Comments on this Policy

Any comments on this policy or suggestions for improvement can be discussed on our forum, or you can send us an email for any comments or suggestions that contain sensitive information.

Java
1
https://gitee.com/ChinaLym/shoulder-lombok.git
git@gitee.com:ChinaLym/shoulder-lombok.git
ChinaLym
shoulder-lombok
shoulder-lombok
master

搜索帮助