Comment on We need a “/heartbleed.txt” standard, and we need it ASAPparentComments−jikOP12yYour proposal may want to follow RFC 5785 aka "/.well-known/"This is addressed in a comment below the blog posting.That said, I don't see what problem you're solving or why the solution you propose should help.I don't know how to explain it better than I already have. Sorry.−dismiss22x12yYour end-comment about /vulnerabilities.txt is a better solution than a /heartbleed.txt as this will not be the last such vulnerability.However, I disagree about YAML. I'd recommend a standard JSON or CSV.
Comments
This is addressed in a comment below the blog posting.
I don't know how to explain it better than I already have. Sorry.
Your end-comment about /vulnerabilities.txt is a better solution than a /heartbleed.txt as this will not be the last such vulnerability.
However, I disagree about YAML. I'd recommend a standard JSON or CSV.