Skip to content

Latest commit

 

History

History
48 lines (35 loc) · 2.48 KB

README.md

File metadata and controls

48 lines (35 loc) · 2.48 KB

Security WG

Proactively ensures the Security of Electron as a project, responds to incoming incidents, and oversees rollout of fixes.

Membership

Avatar Name Role Time Zone
@MarshallOfSound Samuel Attard @MarshallOfSound Chair PST (Vancouver)
@ckerr Charles Kerr @ckerr Member CST (New Orleans)
@deepak1556 Deepak Mohan @deepak1556 Member ?
@zcbenz Cheng Zhao @zcbenz Member JST (?)
@felixrieseberg Felix Rieseberg @felixrieseberg Member PST (San Francisco)
@nornagon Jeremy Apthorp @nornagon Member PST (San Francisco)
@miniak Milan Burda @miniak Member CET (Prague)
@ppontes Pedro Pontes @ppontes Member CET (Prague)
@StevenEBarbaro Steve Barbaro @StevenEBarbaro Member ?

Areas of Responsibility

  • The reporting address: security@electronjs.org
  • Coordinating fixes and disclosures of vulnerabilities
  • Security of Electron as a project
    • Build infrastructure
    • Release tooling
    • Credential management
  • Proactive measures
    • Fuzz testing
    • Pen testing
    • Security review of parts of the codebase
    • Security sign-off on IPC and certain API related changes

Associated Repositories

All repositories in the electron organization along with exclusive access to electron/security.

Rules for Membership

See Membership and Notifications

Meeting Schedule

  • Sync Meeting 1hr Weekly @ Wednesday 9:30AM PT

Meeting notes may be viewed in meeting-notes as they become available.