Skip to content

Security: metadata-swiss/I14Y

SECURITY.md

Security Policy

Supported Versions

Security updates are provided for the latest released version of I14Y.

Version Supported
Latest release
Older releases

Users are encouraged to upgrade to the latest available release to receive security fixes.

Reporting a Vulnerability

Please do not report security vulnerabilities through public GitHub issues.

To report a vulnerability, contact us at i14y@bfs.admin.ch.

If GitHub Private Vulnerability Reporting is enabled for this repository, you may also use GitHub's private vulnerability reporting feature.

Please include, where possible:

  • A description of the vulnerability
  • Steps to reproduce the issue
  • The affected version
  • The potential impact
  • Any suggested remediation

Reports may concern any component maintained in this repository, including backend APIs, frontend applications, shared libraries, and infrastructure code.

Vulnerabilities in third-party dependencies are also relevant when they have a concrete security impact on I14Y or its shipped services and applications.

Disclosure

Please do not publicly disclose a vulnerability before it has been investigated and, where appropriate, remediated.

We ask reporters to coordinate disclosure with the I14Y maintainers so that affected users can be protected before technical details are made public.

There aren't any published security advisories