@rockgecko_dev That's precisely the point.
There is nothing following. You are asking for "responsible" way to deal with
security issues from the author, while this is not their responsibility. It's
that of the organisation who copies the source code and makes it part of their
solution.
1 reply
@rockgecko_dev It's on the authors to
decide what's responsible for them, they don't own anybody the following of any
process.