From e891d5fb138d002ac83af6c492ad22eeb50a0426 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jaroslav=20Loba=C4=8Devski?= Date: Wed, 19 Aug 2026 20:10:55 +0300 Subject: [PATCH] Update vulnerability reporting instructions in SECURITY.md --- SECURITY.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/SECURITY.md b/SECURITY.md index 3d20210454f4..dd33d469c873 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -7,7 +7,7 @@ As such, there is no supportability commitment. The maintainers will do the best ## Reporting a Vulnerability -Please use the "Private vulnerability reporting" feature in the GitHub repository (under the "Security" tab). +Please use the "Private vulnerability reporting" feature in the GitHub repository (under the "Security" tab) once we enable it. ⚠️ **Important:** This policy is intended for vulnerabilities in **Trivy itself** (e.g., core functionality, scanning logic, or security features).