summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorMarc Cornellà <marc@mcornella.com>2024-07-24 19:47:18 +0200
committerMarc Cornellà <marc@mcornella.com>2024-07-24 19:47:18 +0200
commit5e957cdc1653dbdc15d48ef316917d80778da4e8 (patch)
tree3751a4f8234a0f4b5cdc5e648a42103940e7680a
parent7303385b1fc7030bef90589c32120f90eb57c3e1 (diff)
downloadzsh-5e957cdc1653dbdc15d48ef316917d80778da4e8.tar.gz
zsh-5e957cdc1653dbdc15d48ef316917d80778da4e8.tar.bz2
zsh-5e957cdc1653dbdc15d48ef316917d80778da4e8.zip
chore: clarify order of preference for reporting vulnerabilities
-rw-r--r--SECURITY.md4
1 files changed, 2 insertions, 2 deletions
diff --git a/SECURITY.md b/SECURITY.md
index ae7458ee2..f8235840f 100644
--- a/SECURITY.md
+++ b/SECURITY.md
@@ -17,7 +17,7 @@ In the near future we will introduce versioning, so expect this section to chang
**Do not submit an issue or pull request**: this might reveal the vulnerability.
-Instead, you should email the maintainers directly at: [**security@ohmyz.sh**](mailto:security@ohmyz.sh),
-or using the link to [privately report a vulnerability with GitHub](https://github.com/ohmyzsh/ohmyzsh/security/advisories/new).
+Instead, you should use the form to [privately report a vulnerability to us via GitHub](https://github.com/ohmyzsh/ohmyzsh/security/advisories/new)
+or email the maintainers directly at: [**security@ohmyz.sh**](mailto:security@ohmyz.sh).
We will deal with the vulnerability privately and submit a patch as soon as possible.