/
For operators

For operators

From “Guidance for Operators” in OEP-60 Open Source Security Working Group — Open edX Proposals 1.0 documentation:

What do I do if I am an operator and someone reports a vulnerability to me?

What will happen if a report is accidentally sent to security@openedx.org for the operation of my Open edX instance?

  • Please let security@openedx.org know the best email (preferably a group email, like security@company.com) to forward such reports to, along with your Open edX instance name, domain, and separate contact information for an individual responsible for security at your organization.

  • The Security Working Group will do their best to forward such reports to the correct organization.

How do I receive notification of the release of upcoming security patches?

Related content

Security Working Group
Security Working Group
More like this
For maintainers
For maintainers
More like this
Join us
More like this
Security Playbooks – for Security WG members
Security Playbooks – for Security WG members
More like this
2023-03-31 Security WG Meeting
2023-03-31 Security WG Meeting
More like this
State of the Security Working Group (March 2023)
State of the Security Working Group (March 2023)
More like this