diff --git a/SECURITY.md b/SECURITY.md index e191dfa..1b5ce63 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -1,11 +1,13 @@ # Security Policy +Thank you for helping us keep the SDKs and systems they interact with secure. ## Reporting Security Issues This SDK is maintained by [Anthropic](https://www.anthropic.com/) as part of the Model Context Protocol project. -Anthropic takes security seriously, and encourages you to report any security vulnerability promptly so that appropriate action can be taken. +Anthropic takes security seriously, and encourages you to report any security vulnerability promptly so that +appropriate action can be taken. -To report a security issue, please contact the Anthropic team at security@anthropic.com. +Our security program is managed on HackerOne. Please report any security issues via https://hackerone.com/anthropic-vdp. ## Responsible Disclosure @@ -14,15 +16,7 @@ the SDK. If you believe you have found a security vulnerability, please adhere t disclosure practices by allowing us a reasonable amount of time to investigate and address the issue before making any information public. -## Reporting Non-SDK Related Security Issues - -If you encounter security issues that are not directly related to SDKs but pertain to the services -or products provided by Anthropic please contact security@anthropic.com. - -### Anthropic Terms and Policies +## Policy -Please contact support@anthropic.com for any questions or concerns regarding security of our services. - ---- - -Thank you for helping us keep the SDKs and systems they interact with secure. +See our vulnerability disclosure policy at [HackerOne](https://hackerone.com/anthropic-vdp) for further +details.