docs: require SECURITY.md before GHSA reviews

This commit is contained in:
Peter Steinberger
2026-02-19 14:32:15 +01:00
parent 268b0dc921
commit 7c9130f3c5

View File

@@ -126,6 +126,7 @@
## GHSA (Repo Advisory) Patch/Publish
- Before reviewing security advisories, read `SECURITY.md`.
- Fetch: `gh api /repos/openclaw/openclaw/security-advisories/<GHSA>`
- Latest npm: `npm view openclaw version --userconfig "$(mktemp)"`
- Private fork PRs must be closed: