Skip to content

Adding Microsoft SECURITY.MD - #2

Merged
Sun Haoran (haoranpb) merged 1 commit into
mainfrom
users/GitHubPolicyService/bd84a03c-916a-4e24-8828-e0320f109c7b
Sep 29, 2025
Merged

Adding Microsoft SECURITY.MD#2
Sun Haoran (haoranpb) merged 1 commit into
mainfrom
users/GitHubPolicyService/bd84a03c-916a-4e24-8828-e0320f109c7b

Conversation

@microsoft-github-policy-service

Copy link
Copy Markdown

Please accept this contribution adding the standard Microsoft SECURITY.MD 🔒 file to help the community understand the security policy and how to safely report security issues. GitHub uses the presence of this file to light-up security reminders and a link to the file. This pull request commits the latest official SECURITY.MD file from https://github.com/microsoft/repo-templates/blob/main/shared/SECURITY.md.

Microsoft teams can learn more about this effort and share feedback within the open source guidance available internally.

@haoranpb
Sun Haoran (haoranpb) merged commit ad0ee4d into main Sep 29, 2025
1 check passed
@haoranpb
Sun Haoran (haoranpb) deleted the users/GitHubPolicyService/bd84a03c-916a-4e24-8828-e0320f109c7b branch September 29, 2025 07:58
Marko Aleksandric (AleksandricMarko) added a commit that referenced this pull request Jul 31, 2026
…ding

Applies Haoran's review feedback for the extensibility-request categories:

- Rename to explicit `extensibility-request-implement` / `extensibility-request-triage`
  across category ids, enum members, classes, dataset files and module files (#1/#2/#4).
- Slim both prompt templates to reflect real-world usage; category-specific rules now
  live in the ai-ext-fix / argus-triage skills (#3).
- Merge duplicate `bcbench.results` import in commands/evaluate.py (#5).
- Uptake #761: both ext entries subclass `RepoGroundedEntry` (#6/#7).
- Triage `patch` defaults to None; stripped from the dataset (#8).
- Constrain triage label fields with a `ManagedLabel` Literal to catch dataset typos (#9).
- Move the ext dataset classes into dataset/extensibility_request.py, like code review (#10).
- Drop `fetch_commit_if_missing` from both ext pipelines to match the other pipelines (#11).
- Keep ext-implement judge-only for now; container build/publish noted as future work (#12).
- Grade triage with the NL2AL LMChecklist instead of the code-review-style hybrid:
  `ExtRequestTriageResult` removed in favour of `JudgeBasedEvaluationResult`, expected_*
  fields replaced by an `expected` checklist, evaluators `lm_checklist`, core score
  `test_passed`; 17 triage entries migrated (#13/#14/#15/#16).

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
Copilot-Session: fb712366-b026-470c-9d09-1bd9e9f52a31
Wenjie Fan (gggdttt) pushed a commit that referenced this pull request Aug 13, 2026
- Move code-review-only 'articles' off base EntryMetadata into a CodeReviewEntryMetadata subclass (haoran #1)

- Share an ArticleId type between ReviewComment.article and metadata.articles (haoran #3)

- Add a model validator keeping per-comment and entry-level article annotations disjoint so they cannot drift (haoran #2)

- Replace the ad-hoc dataset coverage CLI command with a notebook, matching the bug-fix precedent (haoran #4)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant