Skip to content

Commit 42934db

Browse files
Update bug bounty program handler, domains and response times (#142)
1 parent d8d05df commit 42934db

File tree

1 file changed

+5
-5
lines changed

1 file changed

+5
-5
lines changed

SECURITY.md

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -4,18 +4,18 @@ We are committed to conduct our security process in a professional and civil man
44

55
## Responsible Disclosure
66

7-
For all security related issues, RIF Wallet has two main points of contact. Reach us at <security@iovlabs.org> or refer to our [Bug Bounty Program](https://www.iovlabs.org/bug-bounty-program). **Do not open up a GitHub issue if the bug is a security vulnerability**
7+
For all security related issues, RIF Wallet has two main points of contact. Reach us at <security@rootstocklabs.com> or refer to our [Bug Bounty Program](https://www.rootstocklabs.com/bug-bounty-program). **Do not open up a GitHub issue if the bug is a security vulnerability**
88

99
**Ensure the bug was not already reported** by searching on GitHub under [Issues](https://github.com/rsksmart/rif-wallet-libs/issues).
1010

1111
## Vulnerability Handling
1212

1313
### Response Time
1414

15-
RSK will make a best effort to meet the following response times for reported vulnerabilities:
15+
RootstockLabs will make a best effort to meet the following response times for reported vulnerabilities:
1616

17-
* Time to first response (from report submit) - 24 hours
18-
* Time to triage (from report submit) - 2 business days
17+
* Time to first response (from report submit) - 5 business days
18+
* Time to triage (from report submit) - 7 business days
1919
* Time to bounty (from triage) - 15 business days
2020

2121
We’ll try to keep you informed about our progress throughout the process.
@@ -25,7 +25,7 @@ We’ll try to keep you informed about our progress throughout the process.
2525
* Follow HackerOne's [disclosure guidelines](https://www.hackerone.com/disclosure-guidelines).
2626
* Public disclosure of a vulnerability makes it ineligible for a bounty.
2727

28-
For more information check RSK bounty program policy at [HackerOne](https://hackerone.com/iovlabs)
28+
For more information check RootstockLabs bounty program policy at [HackerOne](https://hackerone.com/rootstocklabs)
2929

3030
## Public Keys
3131

0 commit comments

Comments
 (0)