A Security Policy is a repository’s `SECURITY.MD` file which describes everything auditors and users need to report a potential vulnerability.
The recommendation is that every repository containing code has a Security.md
file.
Examples
Create a policy
To create a security policy from the template
- Navigate to your repository on GitHub
- Click on the “Security” tab
- Click on “Setup a security policy”