{"repo":"nodejs/security-wg","free":true,"listed":false,"github":"https://github.com/nodejs/security-wg","clone":"git clone https://github.com/nodejs/security-wg.git","description":"Node.js Ecosystem Security Working Group","language":"Go","stars":543,"topics":["nodejs","node"],"license":"MIT","category":"security-tools","readme_excerpt":"Security Team Table of Contents - Node.js Bug Bounty Program - Current Initiatives - Current Project Team Members - Emeritus Members - Code of Conduct - Moderation Policy This team is not responsible for managing or responding to security reports against Node.js itself. That responsibility remains with the [Node.js TSC][]. Node.js Bug Bounty Program The program is managed through the HackerOne platform at https://hackerone.com/nodejs with further details. Current Initiatives Initiative Champion Status Links ---------------------- -------------------------------------------------- ------------------------------------------ ------------------------------------------------- Automate Security release process @marco-ippolito / @RafaelGSS In Progress Issue #860 Node.js maintainers: Threat Model Group effort In Progress Issue #1333 Audit build process for dependencies @mhdawson TODO Issue #1037 Adopt OpenJS CNA for CVE Operations @UlisesGascon In progress Issue #1576 Current Project Team Members fraxken - Thomas Gentilhomme marco-ippolito - Marco Ippolito mdawson - Michael Dawson RafaelGSS - Rafael Gonzaga ulisesGascon - Ulises Gascon Emeritus Members ChALkeR - Сковорода Никита Андреевич DanielRuf - Daniel Ruf MarcinHoppe - Marcin Hoppe SomeoneWeird - Adam Brady aeleuterio André Eleuterio ashishkurmi - Ashish Kurmi bengl - Bryan English brycebaril - Bryce Baril cjihrig - Colin Ihrig deian - Deian Stefan dgonzalez - David Gonzalez digitalinfinity - Hitesh Kanwathirtha dougwilson - Do","default_branch":null,"files":null,"tree":[],"storefront":"/r/nodejs","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/nodejs/security-wg/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}