Re: Security issue handling
| From: | 陈亮 | Date: | Sun, 30 Oct 2016 22:13:19 +0000 |
| Subject: | Re: Security issue handling | ||
| References: | 1 2 3 | Groups: | php.internals |
| Request: | Send a blank email to internals+get-96664@lists.php.net to get a copy of this message | ||
Hi,
>> OFC it'd be ideal to have some karma holders to participate. And
>> another option, which is IMHO eligible - we could invite several
>> reporters. There is already a couple of people, who regularly report
>> security issues and keep them confident until they're publicly
>> disclosed. IMHO it is a good base for trust.
>
> The reporter is asked to review the patch anyway. I don't think I feel
> comfortable inviting other reporters - unless I know who they are, which
> right now is not true for most of them.
I'm gladly willing to help with some security issues if you need and want.