From 5eedcfb6db9954b5b980893858d1ea4960771eac Mon Sep 17 00:00:00 2001 From: Classic298 <27028174+Classic298@users.noreply.github.com> Date: Thu, 11 Jun 2026 17:56:54 +0200 Subject: [PATCH] Update SECURITY.md --- docs/SECURITY.md | 2 ++ 1 file changed, 2 insertions(+) diff --git a/docs/SECURITY.md b/docs/SECURITY.md index 3dbb0d4e83..677a9a2dee 100644 --- a/docs/SECURITY.md +++ b/docs/SECURITY.md @@ -1,6 +1,8 @@ # Security Policy Our goal is to protect Open WebUI's users and their data, and to handle security reports with a clear, consistent, and publicly documented process. +We want to operate a transparent security process, in which accepted vulnerabilities are published openly as advisories so anyone can see what was found, how it was resolved and most importantly, which version contains a patch for it. +Our stance: a visible advisory history is evidence of active scrutiny and a disclosure process that works, not a measure of how fragile the software is. ## Supported Versions