mirror of
https://github.com/openclaw/openclaw.git
synced 2026-04-29 10:02:04 +00:00
IRP refinement
Signed-off-by: joshavant <830519+joshavant@users.noreply.github.com>
This commit is contained in:
@@ -43,12 +43,6 @@ Disclosure policy:
|
||||
- Critical/high incidents should receive coordinated disclosure, with CVE issuance when appropriate.
|
||||
- Low-risk hardening findings may be documented in release notes or advisories without CVE, depending on impact and user exposure.
|
||||
|
||||
Every published incident update should include:
|
||||
|
||||
1. Affected versions and fixed versions.
|
||||
2. Impact summary and trust-boundary context.
|
||||
3. Mitigation steps for users who cannot upgrade immediately.
|
||||
|
||||
## 5. Recovery and follow-up
|
||||
|
||||
After shipping the fix:
|
||||
|
||||
Reference in New Issue
Block a user