Skip to content

Commit

Permalink
Merge pull request #227 from ossf/nodejs-digest-august
Browse files Browse the repository at this point in the history
doc: update nodejs h1 digest
  • Loading branch information
scovetta authored Sep 7, 2023
2 parents a8c6c0b + 70810f3 commit e44374c
Showing 1 changed file with 12 additions and 11 deletions.
23 changes: 12 additions & 11 deletions alpha/engagements/2023/node.js/update-2023-08.md
Original file line number Diff line number Diff line change
Expand Up @@ -6,17 +6,18 @@ Each section points to at least one item on the priority list defined by the Sec

## 1) Fix and Triage Security Issues

* TODO H1 Digest

* 7 reports were closed as "Resolved" in August due to the Security Release
* Triaged and fixed reports to permission model vulnerabilities
* Triaged and fixed reports to policy vulnerabilities
* 1 report was closed as N/A (non-applicable)
* H1-2128370 - Closed as N/A
* 5 reports were closed as "Informative". 2 of 5 required an update in the Node.js documentation:
* H1-1962666 - It [required a documentation update](https://github.com/nodejs/node/pull/48947) for policy expectations
* H1-1961655 - We assessed it as a known limitation of the permission model.
* 1 report was closed as "Spam"
* Your team closed 14 reports in August (+75%), compared to 8 in July.
* 6 hackers participated in your program in August (-14%), compared to 7 in July.
* Your team's average first response time in August was 5 hours (-91%), compared to 53 in July.
* 7 reports were closed as "Resolved" in August due to the Security Release
* Triaged and fixed reports to permission model vulnerabilities
* Triaged and fixed reports to policy vulnerabilities
* 1 report was closed as N/A (non-applicable)
* H1-2128370 - Closed as N/A
* 5 reports were closed as "Informative". 2 of 5 required an update in the Node.js documentation:
* H1-1962666 - It [required a documentation update](https://github.com/nodejs/node/pull/48947) for policy expectations
* H1-1961655 - We assessed it as a known limitation of the permission model.
* 1 report was closed as "Spam"

## 2) Support for Security Releases

Expand Down

0 comments on commit e44374c

Please sign in to comment.