Merge pull request #1724 from PyCQA/asottile-patch-1

add tidelift security policy
This commit is contained in:
Anthony Sottile 2022-10-28 20:15:55 -04:00 committed by GitHub
commit ec0433c443
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

5
.github/SECURITY.md vendored Normal file
View file

@ -0,0 +1,5 @@
## security contact information
to report a security vulnerability, please use the
[Tidelift security contact](https://tidelift.com/security).
Tidelift will coordinate the fix and disclosure.