diff --git a/definitions.rst b/definitions.rst index 32064ed7548884851fc9d7a00a1d8afefdd58dcc..140ab22a067334040061bd8fcd2cd406aec3555e 100644 --- a/definitions.rst +++ b/definitions.rst @@ -2,7 +2,3 @@ .. .. SPDX-License-Identifier: CC-BY-4.0 .. |main_project_name| replace:: Oniro Project -.. |contact_info| replace:: <TBD> -.. |security_contact| replace:: <TBD> -.. |security_public_key| replace:: <TBD> -.. |security_bugtracker| replace:: <https://booting.oniroproject.org/security/bugtracker/-/issues> diff --git a/security/cve_policy.rst b/security/cve_policy.rst index a77692ae2d789964fae57981f9cd4a79d313f708..3f81fd59d409ad4f7a376a7a75387ab644e01cf9 100644 --- a/security/cve_policy.rst +++ b/security/cve_policy.rst @@ -24,10 +24,10 @@ How to report a vulnerability? If you think you have found a security issue in our distribution, please contact us immediatelly by posting a confidential issue in our bug tracker in a -dedicated `security project |security_bugtracker|`. +dedicated `security project <https://booting.oniroproject.org/security/bugtracker/-/issues>`_. To do so, login into our issue tracker or create a new account if you do not have one -yet. Click on ``New issue``, then make sure to check the checkbox at the bottom +yet. Click on `New issue <https://booting.oniroproject.org/security/bugtracker/-/issues/new>`_, then make sure to check the checkbox at the bottom 'This issue is confidential and should only be visible to team members with at least Reporter access'. Please use the 'Issue' type of ticket and the associated template. Fill in the title, answer the questions in the 'Description' field.