Browse Source

Maintenance: Correct the PGP key formatting, add security.txt

Martin Gruner 3 months ago
parent
commit
e8fc3b9918
3 changed files with 21 additions and 17 deletions
  1. 14 0
      SECURITY.asc
  2. 1 17
      SECURITY.md
  3. 6 0
      security.txt

+ 14 - 0
SECURITY.asc

@@ -0,0 +1,14 @@
+-----BEGIN PGP PUBLIC KEY BLOCK-----
+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+=GDpl
+-----END PGP PUBLIC KEY BLOCK-----

+ 1 - 17
SECURITY.md

@@ -13,23 +13,7 @@ If you've found a security vulnerability in Zammad,
 please report the vulnerability exclusively via email
 to [security@zammad.com](mailto:security@zammad.com).
 
-To send us a secure message, please use our public key below:
-
-```rsa
------BEGIN PGP PUBLIC KEY BLOCK-----
-mDMEZVsi2RYJKwYBBAHaRw8BAQdAIm/0t+RboVPq5syrc0n9hP3UPH7xok7mNCqM
-5R39oZi0JVphbW1hZCBTZWN1cml0eSA8c2VjdXJpdHlAemFtbWFkLmNvbT6ImQQT
-FgoAQRYhBARIHz68FJQ7lF5Ox7snHWG50ZiEBQJlWyLZAhsDBQkSzAMABQsJCAcC
-AiICBhUKCQgLAgQWAgMBAh4HAheAAAoJELsnHWG50ZiEM+MBAMMdppJHzPNRdgke
-bv7+z591+LrQqsKJUBUHjlujsxrbAQCF9RRf2CSTaF2SBD9vrGxdL58Bb/AVs1t6
-ZX/Xf/ozDLg4BGVbItkSCisGAQQBl1UBBQEBB0DtyQW5YnpS1MQ+umPKax706r+R
-RJZRO63fma5e+rhaKgMBCAeIfgQYFgoAJhYhBARIHz68FJQ7lF5Ox7snHWG50ZiE
-BQJlWyLZAhsMBQkSzAMAAAoJELsnHWG50ZiE9w8BAKj36yLaf7do05ObiTjpFR5P
-iDa6aRHJSWDpdut8Q19jAQCfH1WZ2M/2VK0E03k6zcfc56m+z1gwdkq78dAunte2
-BA==
-=GDpl
------END PGP PUBLIC KEY BLOCK-----
-```
+To send us a secure message, please use [our public key](SECURITY.asc).
 
 We will get back to you as soon as possible and inform
 you about the next steps. Accepted vulnerabilities will

+ 6 - 0
security.txt

@@ -0,0 +1,6 @@
+# See: https://securitytxt.org/
+Contact: mailto:security@zammad.com
+Expires: 2049-12-31T23:00:00.000Z
+Encryption: https://raw.githubusercontent.com/zammad/zammad/refs/heads/develop/SECURITY.asc
+Preferred-Languages: en
+Policy: https://github.com/zammad/zammad/blob/develop/SECURITY.md