From e5c669dc7a5182d1a1faf3a98994cf2eb9ddfc5c Mon Sep 17 00:00:00 2001 From: Laurent Cozic Date: Tue, 20 Sep 2022 12:15:13 +0300 Subject: [PATCH] Doc: Mention that we do not offer bounties --- SECURITY.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/SECURITY.md b/SECURITY.md index 336984c4b..241b0ae32 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -9,3 +9,7 @@ Only the latest version is supported with security updates. Please [contact support](https://raw.githubusercontent.com/laurent22/joplin/dev/Assets/AdresseSupport.png) **with a proof of concept** that shows the security vulnerability. Please do not contact us without this proof of concept, as we cannot fix anything without this. For general opinions on what makes an app more or less secure, please use the forum. + +## Bounty + +We **do not** offer a bounty for discovering vulnerabilities, please do not ask. We can however credit you and link to your website in the changelog and release announcement.