From 132e87500e1ee5a3ef10492222888ef9e0328d7d Mon Sep 17 00:00:00 2001 From: Michelle Habonneau <83347449+Michellehbn@users.noreply.github.com> Date: Thu, 5 Sep 2024 16:41:01 +0200 Subject: [PATCH] Update SECURITY.md (#32680) updated reporting a vulnerability section --- SECURITY.md | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/SECURITY.md b/SECURITY.md index fcb8b9b6f18..431b17a8504 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -36,5 +36,4 @@ Please inspect the code of the tools before passing them to the Agent to protect ## Reporting a Vulnerability -🤗 Please feel free to submit vulnerability reports to our private bug bounty program at https://hackerone.com/hugging_face. You'll need to request access to the program by emailing security@huggingface.co. -Note that you'll need to be invited to our program, so send us a quick email at security@huggingface.co if you've found a vulnerability. +Feel free to submit vulnerability reports to [security@huggingface.co](mailto:security@huggingface.co), where someone from the HF security team will review and recommend next steps. If reporting a vulnerability specific to open source, please note [Huntr](https://huntr.com) is a vulnerability disclosure program for open source software.