Skip to content

use msft security template#2203

Merged
harrieshin merged 1 commit intomicrosoft:mainfrom
harrieshin:hyshin/securitymd
Sep 8, 2025
Merged

use msft security template#2203
harrieshin merged 1 commit intomicrosoft:mainfrom
harrieshin:hyshin/securitymd

Conversation

@harrieshin
Copy link
Copy Markdown
Contributor

@harrieshin harrieshin commented Sep 8, 2025

Platforms Impacted

  • iOS
  • visionOS
  • macOS

Description of changes

The Microsoft SECURITY.md standard file has varied over time with a number of different versions. Additionally, some repositories have made modifications. With thousands of Microsoft owned open source repositories, there is not consistency in how we instruct users to report security problems.

To minimize future toil and ensure a unified and accurate experience for public users reporting security issues in Microsoft repositories, we are moving to a normalized approach where the SECURITY.md file will have only a brief message that points to a central location where more information is provided on how users can securely report security problems in Microsoft owned repositories. Putting most of the content in a central location lets us more easily update links and instructions in a single place rather than thousands of places. There may be S360 alerts raised to nudge you into adopting the new standard. This is a one-time effort to reduce update toil in the future.

Pull request checklist

This PR has considered:

  • Light and Dark appearances
  • iOS supported versions (all major versions greater than or equal current target deployment version)
  • VoiceOver and Keyboard Accessibility
  • Internationalization and Right to Left layouts
  • Different resolutions (1x, 2x, 3x)
  • Size classes and window sizes (iPhone vs iPad, notched devices, multitasking, different window sizes, etc)
  • iPad Pointer interaction
  • SwiftUI consumption (validation or new demo scenarios needed)
  • Objective-C exposure (provide it only if needed)
Microsoft Reviewers: Open in CodeFlow

@harrieshin harrieshin requested a review from a team as a code owner September 8, 2025 17:07
@harrieshin harrieshin enabled auto-merge (squash) September 8, 2025 17:23
@harrieshin harrieshin merged commit 3937266 into microsoft:main Sep 8, 2025
7 checks passed
@joannaquu joannaquu mentioned this pull request Oct 23, 2025
12 tasks
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants