8000 Improved markdown · arduino/arduino-cvd-policy@8f05e9c · GitHub
[go: up one dir, main page]

Skip to content

Commit 8f05e9c

Browse files
author
Gianluca Varisco
committed
Improved markdown
1 parent 4ef1ed2 commit 8f05e9c

File tree

1 file changed

+4
-4
lines changed

1 file changed

+4
-4
lines changed

README.md

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -11,15 +11,15 @@ We ask that you:
1111

1212
- Make every effort to avoid privacy violations, degradation of user experience, disruption to production systems, and destruction or manipulation of data.
1313
- Only use exploits to the extent necessary to confirm a vulnerability, don’t exploit a vulnerability for gain. Do not use an exploit to compromise or exfiltrate data, establish command line access and/or persistence, or use the exploit to "pivot" to other systems. Once you've established that a vulnerability exists, or encountered any of the sensitive data outlined below, please stop your test and notify us immediately.
14-
- Please keep confidential any information about discovered vulnerabilities for **up to 90 calendar days** after you have notified Arduino, unless mutually agreed otherwise. For details, please review our **Coordinated Disclosure** section below.
14+
- Please keep confidential any information about discovered vulnerabilities for **up to 90 calendar days** after you have notified Arduino, unless mutually agreed otherwise. For details, please review our [**Coordinated Disclosure**](#coordinated-disclosure) section below.
1515
- Please do not modify, store or access data that does not belong to you. Instead, use your own accounts for security research purposes.
16-
- If you inadvertently access, modify, delete, or store user data, we ask that you notify Arduino immediately at [**security@arduino.cc**](mailto:security@arduino.cc.) and delete any stored data after notifying us.
16+
- If you inadvertently access, modify, delete, or store user data, we ask that you notify Arduino immediately at [**security@arduino.cc**](mailto:security@arduino.cc) and delete any stored data after notifying us.
1717

18-
When in doubt about if your potential conduct complies with this policy, please contact us first, before taking action, at [**security@arduino.cc**](mailto:security@arduino.cc.) and we will address your questions.
18+
When in doubt about if your potential conduct complies with this policy, please contact us first, before taking action, at [**security@arduino.cc**](mailto:security@arduino.cc) and we will address your questions.
1919

2020
## Reporting a vulnerability
2121

22-
We accept and discuss vulnerability reports via email at [**security@arduino.cc**](mailto:security@arduino.cc.). Please encrypt your findings using **our PGP key** to prevent this critical information from falling into the wrong hands.
22+
We accept and discuss vulnerability reports via email at [**security@arduino.cc**](mailto:security@arduino.cc). Please encrypt your findings using **our PGP key** to prevent this critical information from falling into the wrong hands.
2323

2424
Reports should include:
2525

0 commit comments

Comments
 (0)
0