Hi, On Mon, May 23, 2016 at 10:49:54PM +0200, Moritz Mühlenhoff wrote: > Hi, > adding [email protected] to CC and quoting in full below to solicit > further comments. > > I think Drake's proposal makes perfect sense, the current behaviour is mostly > historic, it > was around before I joined the security team ten years ago. > > And maybe let's add something like: > "If you want to contact the security in private, please write to > [email protected], > if you want to discuss this on a public mailing list write to > [email protected]."
Just a "agree" from my side. It probably would make sense to not send replies to [email protected] but instead have it sent to another mail which autoreplies with a set of indications what can be done and expand it with the above two lines. IIRC if someone tries to post to d-s-a manually, it get's already such an autoreply, just needs to say as well the further two contact lines. Regards, Salvatore
signature.asc
Description: Digital signature

