nawan@scribe.disroot.org to Selfhosted@lemmy.worldEnglish · edit-21 day agoFor those selfhosting stuff that's publicy accessible, do you serve a security.txt?message-squaremessage-square15linkfedilinkarrow-up180arrow-down11file-text
arrow-up179arrow-down1message-squareFor those selfhosting stuff that's publicy accessible, do you serve a security.txt?nawan@scribe.disroot.org to Selfhosted@lemmy.worldEnglish · edit-21 day agomessage-square15linkfedilinkfile-text
minus-squaremajster@lemmy.ziplinkfedilinkEnglisharrow-up7·1 day agoDo people actually contact you with that?
minus-squaremoldy_rice@piefed.keyboardvagabond.comlinkfedilinkEnglisharrow-up2·14 hours agoYep. Looots of phishing emails.
minus-square3abas@lemmy.worldlinkfedilinkEnglisharrow-up3·1 day agoI have a security.txt with an email to report vulnerabilities and a public key to encrypt sensitive information. The only reports I ever got were on the contract us form, unencrypted.
Do people actually contact you with that?
Yep. Looots of phishing emails.
I have a security.txt with an email to report vulnerabilities and a public key to encrypt sensitive information. The only reports I ever got were on the contract us form, unencrypted.