Author: alopresto
Date: Fri May 15 17:56:05 2020
New Revision: 1877790

URL: http://svn.apache.org/viewvc?rev=1877790&view=rev
Log:
Added link to ASF security policy to security page.

Modified:
    nifi/site/trunk/security.html

Modified: nifi/site/trunk/security.html
URL: 
http://svn.apache.org/viewvc/nifi/site/trunk/security.html?rev=1877790&r1=1877789&r2=1877790&view=diff
==============================================================================
--- nifi/site/trunk/security.html (original)
+++ nifi/site/trunk/security.html Fri May 15 17:56:05 2020
@@ -124,8 +124,15 @@
         <ul>
             <li>Let us know as soon as possible upon discovery of a potential 
security issue, and we'll make every effort to quickly resolve the issue.</li>
             <li>Provide us a reasonable amount of time to resolve the issue 
before any disclosure to the public or a third-party.</li>
-            <li>Make a good faith effort to avoid privacy violations, 
destruction of data, and interruption or degradation of our service. Only 
interact with accounts you own or with explicit
-                permission of the account holder.
+            <li>Make a good faith effort to avoid privacy violations, 
destruction of data, and interruption or degradation of our service. Only 
interact with accounts you own or with explicit permission of the account 
holder.</li>
+            <li>Please read the <a 
href="https://www.apache.org/security/committers.html"; target="_blank">Apache 
Project Security for Committers policy</a> to understand the restrictions 
around disclosure of security issues in the Apache open source community. 
+            <br/><br/>
+            Specifically, please <strong><em>do not</em></strong>: 
+                <ul style="list-style-type:none;">
+                    <li >⛔️ Open a Jira disclosing a security 
vulnerability to the public</li>
+                    <li>⛔️ Send a message to the d...@nifi.apache.org or 
us...@nifi.apache.org mailing lists disclosing a security vulnerability to the 
public</li>
+                    <li>⛔️ Send a message to the Apache NiFi Slack 
instance disclosing a security vulnerability to the public</li>
+                </ul>
             </li>
         </ul>
         <h3>Exclusions</h3>


Reply via email to