Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Security Advisories: Traceability #92

Open
github-product-roadmap opened this issue Jul 24, 2020 · 0 comments
Open

Security Advisories: Traceability #92

github-product-roadmap opened this issue Jul 24, 2020 · 0 comments

Comments

@github-product-roadmap
Copy link
Collaborator

@github-product-roadmap github-product-roadmap commented Jul 24, 2020

Summary
Security Advisories Traceability allows users to see what source code and version includes the fix for the noted vulnerability.

Intended Outcome
Including information on the fixed version directly in the advisory will make it easier for users to determine if they have addressed a particular vulnerability, and if a patch is available.

How will it work?
Today, GitHub Security Advisories enable maintainers to privately discuss, fix, and disclose information about vulnerabilities in their projects. This information is used to automatically trigger security updates for participating GitHub repositories. At or after the publication of a Security Advisory, the creator will be able to add information about the patch or minimum version containing the fix.

@github github locked and limited conversation to collaborators Jul 24, 2020
@github-product-roadmap github-product-roadmap added this to Q4 2020 – Oct-Dec in GitHub public roadmap Jul 24, 2020
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
GitHub public roadmap
Q4 2020 – Oct-Dec
Linked pull requests

Successfully merging a pull request may close this issue.

None yet
1 participant
You can’t perform that action at this time.