Create SECURITY.md (#1964)

* Create SECURITY.md

We've not actually stated a formal policy, and in leu of email this should suffice.

* Add note about what we consider vulnerabilties
This commit is contained in:
Octavia Togami 2021-12-13 20:33:21 -08:00 committed by GitHub
parent 6df194e569
commit 4b83a13cc5
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

11
SECURITY.md Normal file
View File

@ -0,0 +1,11 @@
# Security Policy
## Supported Versions
We only support the latest release of Minecraft, and the latest release of our software.
## Reporting a Vulnerability
Vulnerabilities should be reported to our Discord bot, EngineHub Bot. The bot can be found in our [Discord server](https://discord.gg/enginehub).
WorldEdit is designed to be an admin tool. We do not consider users being able to break limits or cause lag bugs _if they are given permission to run the commands_. Only performance issues resulting from players without permissions are considered security vulnerabilities.