セキュリティ報告を質問形式に変更
💬 In one line
掲示板に脆弱性(あぶない穴)の報告が来るとき、昔は自由に書けて質が低かったのですが、今は決まった質問に答えてもらう形に変わりました。
✨ Highlights
-
報告者が4つの質問に答える
「何が悪いのか」「どうやって試すのか」「誰が困るのか」を明確に答えてもらうので、見落とす穴が減ります。
-
自分のルールで質問をカスタマイズ可能
倉庫に設定ファイルを置くだけで、自分たちが本当に知りたいことを聞く質問に変えられます。
-
AI で書いたことを報告者が宣言できる
AI が生成した低い品質の報告がまぎれこむのを防げます。
🛠️ What it means for your work
脆弱性の報告メールが来たとき、いままでは何が問題かを聞き返すメールをやり取りしていたと思います。これからは、最初から「どうやって再現できるのか」「最小150字で詳しく書いてね」という指定で来るようになるので、報告の質がぐっと上がり、対応が速くなります。
⚠️ Watch out for
自分でカスタム質問を作ったときは、API(プログラムからの送信)にも同じ質問が適用されるので、古い送信プログラムが動かなくなる可能性があります。
🔗 Original
This page is an AI summary of the official release notes. The full original text is not reproduced here.
Read the GitHub https://github.blog/changelog/2026-10-01-structured-forms-for-private-vulnerability-reports release notes →🔗 Related hubs and releases in the same category
🔔 Get the next one
Get plain-Japanese write-ups of new GitHub releases without opening the site (twice a day). No email address required.
What is RSS: New items arrive automatically wherever you already read (a reader such as Feedly, Slack, n8n). Copy the URL above and paste it in — no sign-up, no cost.
The headline and summary are an AI's Japanese rendering of each company's official announcement. They can diverge from the original. For the exact wording, follow the link to the official page. Terms of Use