On 07.11.2013 12:24, Christian Heimes wrote: > Am 07.11.2013 11:45, schrieb M.-A. Lemburg: >> On 07.11.2013 11:40, Christian Heimes wrote: >>> Hi, >>> >>> this is going through the news right now. Has anybody contact us about >>> the bug bounty program for Python? >>> >>> https://hackerone.com/python >> >> FWIW, the PSF was not contacted about this in advance. >> >> Sounds like a nice project, though. > > The PSRT wasn't contacted either. > > I like it, it's a great idea! It just came as a surprise to me. Should > we contact them and establish a work flow?
I think that would be useful to make sure that the security issues found in the code can be handled properly. -- Marc-Andre Lemburg eGenix.com Professional Python Services directly from the Source (#1, Nov 05 2013) >>> Python Projects, Consulting and Support ... http://www.egenix.com/ >>> mxODBC.Zope/Plone.Database.Adapter ... http://zope.egenix.com/ >>> mxODBC, mxDateTime, mxTextTools ... http://python.egenix.com/ ________________________________________________________________________ 2013-11-19: Python Meeting Duesseldorf ... 14 days to go ::::: Try our mxODBC.Connect Python Database Interface for free ! :::::: eGenix.com Software, Skills and Services GmbH Pastor-Loeh-Str.48 D-40764 Langenfeld, Germany. CEO Dipl.-Math. Marc-Andre Lemburg Registered at Amtsgericht Duesseldorf: HRB 46611 http://www.egenix.com/company/contact/ _______________________________________________ python-committers mailing list [email protected] https://mail.python.org/mailman/listinfo/python-committers
