Skip to content

Security: Azure/documentdb-agent-kit

Security

SECURITY.md

Security Policy

Microsoft takes the security of our software products and services seriously, which includes all source code repositories managed through our GitHub organizations.

Reporting Security Vulnerabilities

Please do not report security vulnerabilities through public GitHub issues, discussions, or pull requests.

Instead, report them to the Microsoft Security Response Center (MSRC):

If you prefer to submit without logging in, use:

You should receive a response within 24 hours. If you do not receive a response, please follow up via the reporting portal.

Please include as much information as possible to help us reproduce and investigate the issue:

  • Type of issue
  • Full paths of affected files or components
  • Steps to reproduce
  • Proof-of-concept code (if available)
  • Potential impact assessment

Supported Versions

As this project is under active development, security fixes are typically provided in the latest version of the repository.

Users are encouraged to:

  • Use the latest released version.
  • Keep dependencies up to date.
  • Follow Azure and Microsoft security best practices when deploying solutions based on this repository.

Additional Resources

For more information about Microsoft's vulnerability disclosure process, see:

There aren't any published security advisories