Skip to content

docs(SECURITY.md): expand security policy for CRA compliance - #22

Open
gundalow wants to merge 1 commit into
ansible-community:mainfrom
gundalow:feat-SECURITY.md
Open

docs(SECURITY.md): expand security policy for CRA compliance#22
gundalow wants to merge 1 commit into
ansible-community:mainfrom
gundalow:feat-SECURITY.md

Conversation

@gundalow

@gundalow gundalow commented Jul 26, 2026

Copy link
Copy Markdown

Summary

  • Replaces the single-line SECURITY.md with a complete security reporting template aligned with the Ansible Security Policy and Vulnerability Management Policy going live at ansible.com/security
  • Adds structured vulnerability reporting guidelines (9 fields matching the security policy), response timeline, backport policy, and a link to the full policy
  • Adds the EU Cyber Resilience Act (CRA) open-source steward statement as required for Red Hat-stewarded projects

Related PRs

Test plan

🤖 Generated with Claude Code

Replace the single-line SECURITY.md with a complete template aligned
with the Ansible Security Policy and Vulnerability Management Policy
going live at ansible.com/security. Adds structured vulnerability
reporting guidelines, response timeline, backport policy, and the
EU Cyber Resilience Act open-source steward statement.

Depends-On: ansible/ansible-documentation#3721
Depends-On: ansible/ansible-documentation#3734

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants