Skip to content

Commit

Permalink
Update Security Policy (#666)
Browse files Browse the repository at this point in the history
Co-authored-by: Xyueta <[email protected]>
  • Loading branch information
he3als and Xyueta authored Apr 7, 2023
1 parent 40ff553 commit 90dd268
Showing 1 changed file with 6 additions and 4 deletions.
10 changes: 6 additions & 4 deletions .github/SECURITY.md
Original file line number Diff line number Diff line change
@@ -1,9 +1,11 @@
## Security Policy

### Reporting a Vulnerability
### Vulnerability Reporting

We at Atlas try our best to do improvements to security out-of-the-box for all users installing our operating system.
At Atlas, our primary objective is to provide an optimal equilibrium between security, performance, and usability.

Since AtlasOS is based around Windows 10, a closed-source OS made by Microsoft, we do not have a lot of options when it comes to solutions to security vulnerabilities. Thus, we kindly ask you to report any security vulnerabilities with our operating system you find to Microsoft and not us.
As Atlas is built on Windows, a proprietary operating system developed by Microsoft, we may not have solutions for security issues associated with Windows. Nonetheless, we are committed to addressing any security concerns caused by Atlas and welcome any enhancements made to the base Windows. We encourage the submission of GitHub issues and pull requests that relate to security vulnerabilities, as long as the solutions match our objective of having an equilibrium.

You can read and learn more about reporting security vulnerabilities and pentesting over at [Microsoft](https://www.microsoft.com/en-us/msrc/faqs-report-an-issue), and we wish you the best of luck in your report.
Should you discover any security flaws linked to the Atlas-specific software/tools or [AME Wizard](https://ameliorated.io) (i.e., anything not related to Microsoft), kindly notify us immediately through the appropriate channels. For AME Wizard, please visit the [website](https://ameliorated.io) to identify suitable contacts. For all other issues, report them to the corresponding Atlas repository as an issue.

Please note that some issues may not be rectifiable by us. If you come across a vulnerability in Atlas that is also present in the latest version of stock/vanilla Windows, please report it to Microsoft. For more information on reporting security vulnerabilities and pentesting, please visit the [Microsoft](https://www.microsoft.com/en-us/msrc/faqs-report-an-issue) website. We wish you the best of luck in your reporting endeavor.

0 comments on commit 90dd268

Please sign in to comment.