Skip to content

Commit 07a05ad

Browse files
committed
update guide
1 parent 87cd588 commit 07a05ad

File tree

1 file changed

+3
-3
lines changed

1 file changed

+3
-3
lines changed

docs/architecture/Security Model & Features.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -125,11 +125,11 @@ OpenCore provides comprehensive audit capabilities to meet regulatory and compli
125125
Staying up to date with security fixes is critical.
126126

127127
- **GitHub Security Advisories**
128-
Subscribe to the OpenCore repository’s security feed to receive CVE and patch notifications.
128+
Subscribe to the OpenCore repository if you want to be update on security and bug fixes.
129129
- **Dependabot & Automated Scans**
130-
We publish a `dependabot.yml` to automatically open PRs for vulnerable dependencies.
130+
We use dependabot and github automated Security and code scanning. And we prefere people use github's "Private vulnerability reporting" feature to report vulnerabilities.
131131
- **Disclosure Policy**
132-
Report vulnerabilities responsibly via security at openiap.io. Our team typically responds within 48 hours and publishes a public advisory once a fix is available. We do not offer bounty programs at this time.
132+
Alernatively, you can report vulnerabilities via security at openiap.io. Our team typically responds within 48 hours, if the report has a real security vulnerabilities and will send out public advisory for paying customers in case for seriuse issues, that need patching. We do not offer bounty programs at this time.
133133

134134
---
135135

0 commit comments

Comments
 (0)