docs(security): prefer GitHub private vulnerability reporting
Surface GitHub's native private reporting workflow as the primary disclosure channel, with security@astrolabecloud.com kept as a fallback for reporters without a GitHub account. Updates SECURITY.md, the README Security section, the issue-template config link, and the bug-template warning banner. Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
This commit is contained in:
co-authored by
Claude Opus 4.7
parent
8cc84ac08b
commit
d6362dc773
@@ -1,8 +1,8 @@
|
||||
blank_issues_enabled: false
|
||||
contact_links:
|
||||
- name: Security vulnerability
|
||||
url: https://github.com/cbcoutinho/nextcloud-mcp-server/blob/master/SECURITY.md
|
||||
about: Do not file security issues publicly. Email security@astrolabecloud.com — see SECURITY.md.
|
||||
- name: Security vulnerability (private report)
|
||||
url: https://github.com/cbcoutinho/nextcloud-mcp-server/security/advisories/new
|
||||
about: Do not file security issues publicly. Use GitHub's private vulnerability reporting, or see SECURITY.md for the email fallback.
|
||||
- name: Question or discussion
|
||||
url: https://github.com/cbcoutinho/nextcloud-mcp-server/discussions
|
||||
about: For general questions, deployment help, or open-ended discussion, please use Discussions instead of opening an issue.
|
||||
|
||||
Reference in New Issue
Block a user