webpack/SECURITY.md

779 B

Reporting Security Issues

If you discover a security issue in webpack, please report it by sending an email to webpack@opencollective.com.

This will allow us to assess the risk, and make a fix available before we add a bug report to the GitHub repository.

Thanks for helping make webpack safe for everyone.

Threat Model

For an overview of the security assumptions, potential attack vectors, and areas of concern relevant to webpack, please refer to the Threat Model.

Incident Response Plan

In the event of a security incident, please refer to the Security Incident Response Plan.