Security Policy

Reporting Security Issues

This is a personal open-source project. We take security seriously and appreciate responsible disclosure of security vulnerabilities.

Please do not report security vulnerabilities through public GitHub issues.

Instead, please use GitHubโ€™s private security advisory feature:

โžก๏ธ Report a Security Vulnerability

Please include as much information as possible:

We will acknowledge receipt of your vulnerability report and send you regular updates about our progress.

Please include the requested information listed below (as much as you can provide) to help us better understand the nature and scope of the possible issue:

This information will help us triage your report more quickly.

If you are reporting for a bug bounty, more complete reports can contribute to a higher bounty award. Please visit our Microsoft Bug Bounty Program page for more details about our active programs.

Preferred Languages

We prefer all communications to be in English.

Policy

Microsoft follows the principle of Coordinated Vulnerability Disclosure.