diff --git a/README.md b/README.md index abe565e53c6d9b..a4a93612c1036d 100644 --- a/README.md +++ b/README.md @@ -159,7 +159,8 @@ source and a list of supported platforms. ## Security -For information about security of the Node.js project, see [Seucrity.md](https://github.com/nodejs/node/blob/master/SECURITY.md). +For information on reporting security vulnerabilities in Node.js, see +[SECURITY.md](./SECURITY.md). ## Current Project Team Members diff --git a/SECURITY.md b/SECURITY.md index 47bc1129c31e10..5f1e3e2cc7d563 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -1,4 +1,5 @@ # Security + If you find a security vulnerability in Node.js, please report it to security@nodejs.org. Please withhold public disclosure until after the security team has addressed the vulnerability. @@ -11,7 +12,6 @@ security issue. Here are some examples of past issues and what the Security Response Team thinks of them. When in doubt, please do send us a report nonetheless. - ## Public disclosure preferred - [#14519](https://github.com/nodejs/node/issues/14519): _Internal domain