On Mon, Sep 14, 2020 at 09:38:07AM +0200, Philippe Mathieu-Daudé wrote: > I don't think so, as I took care to encrypt a bug report and > received the reply unencrypted =) Not sure this is the default > although, as this was my unique experience following the security > process.
Hopefully a one-time mistake. Confidentiality is necessary for the disclosure of security bugs, otherwise users are put at risk. Stefan
signature.asc
Description: PGP signature