Security

Reporting

Use GitHub private vulnerability reporting for security issues. If the endpoint is unavailable, contact vartaxe@outlook.com to arrange a private exchange. Do not post vulnerability details in a public issue or send credentials in the initial contact.

Use GitHub Issues only for non-sensitive bugs and documentation issues. Do not publish unsanitized logs, ZIP archives, command lines, credentials, tokens, certificates, internal server names, or deployment policy data.

Security model

Authentication and transport

The script does not retrieve Network Access Account credentials or reserved ConfigMgr credential variables, and does not use external credential helpers. See compatibility for prerequisites and limitations.