Skip to content

Commit d84ebc1

Browse files
SteveL-MSFTTravisEz13
authored andcommitted
Update our language on our policy applying to security issues (PowerShell#10304)
1 parent 9eb5587 commit d84ebc1

File tree

1 file changed

+7
-0
lines changed

1 file changed

+7
-0
lines changed

.github/SECURITY.md

+7
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,12 @@
11
# Security Vulnerabilities
22

3+
Security issues are treated very seriously and will, by default,
4+
takes precedence over other considerations including usability, performance,
5+
etc... Best effort will be used to mitigate side effects of a security
6+
change, but PowerShell must be secure by default.
7+
8+
## Reporting a security vulnerability
9+
310
If you believe that there is a security vulnerability in PowerShell,
411
it **must** be reported to [[email protected]](https://technet.microsoft.com/security/ff852094.aspx) to allow for [Coordinated Vulnerability Disclosure](https://technet.microsoft.com/security/dn467923).
512
**Only** file an issue, if [[email protected]](https://www.microsoft.com/en-us/msrc/faqs-report-an-issue?rtc=1) has confirmed filing an issue is appropriate.

0 commit comments

Comments
 (0)