Home

Awesome

Node.js Security Team Security Meetings OpenJS Slack Invite OpenSSF scorecard

Security Team

Table of Contents

This team is not responsible for managing or responding to security reports against Node.js itself. That responsibility remains with the Node.js TSC.

Node.js Bug Bounty Program

The program is managed through the HackerOne platform at https://hackerone.com/nodejs with further details.

Current Initiatives

InitiativeChampionStatusLinks
Automate Security release process@marco-ippolito / @RafaelGSSIn ProgressIssue #860
Node.js maintainers: Threat ModelGroup effortIn ProgressIssue #1333
Audit build process for dependencies@mhdawsonTODOIssue #1037

Current Project Team Members

Emeritus Members

Code of Conduct

The Node.js Code of Conduct applies to this team.

Moderation Policy

The Node.js Moderation Policy applies to this team.