Skip to content

Commit 08f09e4

Browse files
committed
Add SECURITY.md
This adds a security disclosure document based on the NHS software engineering quality framework template.
1 parent 4aceedb commit 08f09e4

1 file changed

Lines changed: 16 additions & 0 deletions

File tree

SECURITY.md

Lines changed: 16 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,16 @@
1+
# Security
2+
3+
We take security and the protection of private data extremely seriously. If you believe you have found a vulnerability or other issue which has compromised or could compromise the security of any of our systems or private data managed by our systems, please do not hesitate to contact us using the method outlined below.
4+
5+
## Reporting a vulnerability
6+
7+
If you believe you have found a security issue in this repository, please report it using GitHub's private vulnerability reporting:
8+
9+
1. [Report a vulnerability](https://github.com/NHSDigital/manage-vaccinations-in-schools/security/advisories/new)
10+
1. Provide details of the issue and steps to reproduce
11+
12+
This creates a private channel for discussion and allows us to coordinate a fix before any public disclosure.
13+
14+
## General Security Enquiries
15+
16+
If you have general enquiries regarding our cybersecurity, please reach out to us at [cybersecurity@nhs.net](cybersecurity@nhs.net)

0 commit comments

Comments
 (0)