add SECURITY.md vulnerability disclosure policy

main
Arvid Lunnemark 2024-09-06 15:57:02 -07:00
parent ac22dc204e
commit 4e035e31b1
1 changed files with 14 additions and 0 deletions

14
SECURITY.md Normal file
View File

@ -0,0 +1,14 @@
# Vulnerability Disclosure Policy
This document outlines Cursor's vulnerability disclosure policy. For more information about Cursor's approach to security, please visit [cursor.com/security](https://cursor.com/security).
## Reporting a Vulnerability
**Please do not report security vulnerabilities through public GitHub issues.**
Instead, please report them to our [GitHub Security page](https://github.com/getcursor/cursor/security). If you prefer to submit one without using GitHub, you can also email us at [security@cursor.com](mailto:security@cursor.com).
We commit to acknowledging vulnerability reports immediately, and will work to fix active vulnerabilities as soon as we can. We will publish resolved vulnerabilities in the form of security advisories on our GitHub security page. Critical incidents will be communicated both on the GitHub security page and via email to all affected users.
We appreciate your help in making Cursor more secure for everyone. Thank you for your support and responsible disclosure.