| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
By default, PowerShellOrg supports the latest minor release of the latest major version of each module. Individual repositories may define a broader support window in their own SECURITY.md; where they do, the repo-level policy takes precedence over this document.
| Version policy | Receives security fixes? |
|---|---|
| Latest release | Yes |
| Previous minor (same major) | Best-effort; patch may not be backported |
| Older majors | No |
If you are unsure whether a version is covered, open a discussion or check the repo's own SECURITY.md.
Please do not report security vulnerabilities in public GitHub issues.
Use GitHub's built-in Private Vulnerability Reporting on the affected repository:
This creates an encrypted draft security advisory visible only to maintainers and the Org Admin.
If GitHub Private Vulnerability Reporting is unavailable or you prefer email:
A useful report includes:
Once we receive your report:
| Milestone | Target |
|---|---|
| Acknowledge receipt | 72 hours |
| Provide a status update | 7 days |
| Deliver fix or mitigation for critical severity | 14 days |
| Deliver fix or mitigation for high severity | 30 days |
| Deliver fix or mitigation for medium/low severity | 90 days |
These are targets, not guarantees. If we need more time, we will tell you why.
We follow a coordinated disclosure model:
We ask that reporters:
In return, we commit to:
The following are generally not in scope for security reports:
If you are unsure whether your finding is in scope, report it anyway — we would rather review a borderline finding than miss a real one.
General security questions (not vulnerability reports) can be asked in GitHub Discussions on the relevant repository.
| Back | FazBrowse Home | New Git URL |