core-lightning/doc/guides/Contribute to Core Lightning/security-policy.md
Adi Shankara e83782f5de doc: Add guides and GitHub workflow for doc sync
This PR:
- adds all the guides (in markdown format) that is published at https://docs.corelightning.org/docs
- adds a github workflow to sync any future changes made to files inside the guides folder
- does not include API reference (json-rpc commands). Those will be handled in a separate PR since they're used as manpages and will require a different github workflow

Note that the guides do not exactly map to their related files in doc/, since we reorganized the overall documentation structure on readme for better readability and developer experience. For example, doc/FUZZING.md and doc/HACKING.md#Testing are merged into testing.md in the new docs. As on the creation date of this PR, content from each of the legacy documents has been synced with the new docs. Until this PR gets merged, I will continue to push any updates made to the legacy documents into the new docs.

If this looks reasonable, I will add a separate PR to clean up the legacy documents from doc/ (or mark them deprecated) to avoid redundant upkeep and maintenance.

Changelog-None
2023-06-06 12:40:19 +09:30

1.3 KiB
Raw Blame History

title slug excerpt hidden createdAt updatedAt
Security policy security-policy Learn how to responsibly report a security issue. false 2022-12-09T09:58:38.899Z 2023-02-21T15:15:57.281Z

Supported Versions

We have a 3 month release cycle, and the last two versions are supported.

Reporting a Vulnerability

To report security issues, send an email to rusty at rustcorp.com.au, or security at blockstream.com (not for support).

Signatures For Releases

The following keys may be used to communicate sensitive information to
developers, and to validate signatures on releases:

Name Fingerprint
Rusty Russell 15EE 8D6C AB0E 7F0C F999 BFCB D920 0E6C D1AD B8F1
Christian Decker B731 AAC5 21B0 1385 9313 F674 A26D 6D9F E088 ED58
Lisa Neigut 30DE 693A E0DE 9E37 B3E7 EB6B BFF0 F678 10C1 EED1
Alex Myers 0437 4E42 789B BBA9 462E 4767 F3BF 63F2 7474 36AB

You can import a key by running the following command with that individuals fingerprint: gpg --keyserver hkps://keys.openpgp.org --recv-keys "<fingerprint>". Ensure that you put quotes around fingerprints containing spaces.