You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

49 lines
2.1 KiB
Markdown

# Security Policy
## Supported Versions
At the moment only the latest release is supported. When you report a security issue,
be sure it can be reproduced in the supported version.
| Version | Supported |
| ------- | ------------------ |
| 2.0.0 | :white_check_mark: |
| <2.0.0 | :x: |
## Reporting a Vulnerability
If you have information about a security issue or vulnerability in the product, please
send an e-mail to [secure@intel.com](mailto:secure@intel.com). Encrypt sensitive information
using our PGP public key.
Please provide as much information as possible, including:
- The products and versions affected
- Detailed description of the vulnerability
- Information on known exploits
- A member of the Intel Product Security Team will review your e-mail and contact you to
collaborate on resolving the issue.
For more information on how Intel works to resolve security issues, see:
[Vulnerability handling guidelines](<https://www.intel.com/content/www/us/en/security-center/vulnerability-handling-guidelines.html>)
## Intel® Bug Bounty Program
Intel Corporation believes that working with skilled security researchers across the globe
is a crucial part of identifying and mitigating security vulnerabilities in Intel products.
Like other major technology companies, Intel incentivizes security researchers to report
security vulnerabilities in Intel products to us to enable a coordinated response. To
encourage closer collaboration with the security research community on these kinds of issues,
Intel created its Bug Bounty Program.
If you believe you've found a security vulnerability in an Intel product or technology, we
encourage you to notify us through our program and work with us to mitigate and to coordinate
disclosure of the vulnerability.
[Intel® Bug Bounty Program Terms](<https://www.intel.com/content/www/us/en/security-center/bug-bounty-program.html>)
Watch this video, [So You Found a Vulnerability](<https://www.intel.com/content/www/us/en/security-center/so-you-found-a-vulnerability.html>),
to find out what you can expect when participating in the Intel® Bug Bounty Program.