Security updates are provided for the latest released version of I14Y.
| Version | Supported |
|---|---|
| Latest release | ✅ |
| Older releases | ❌ |
Users are encouraged to upgrade to the latest available release to receive security fixes.
Please do not report security vulnerabilities through public GitHub issues.
To report a vulnerability, contact us at i14y@bfs.admin.ch.
If GitHub Private Vulnerability Reporting is enabled for this repository, you may also use GitHub's private vulnerability reporting feature.
Please include, where possible:
- A description of the vulnerability
- Steps to reproduce the issue
- The affected version
- The potential impact
- Any suggested remediation
Reports may concern any component maintained in this repository, including backend APIs, frontend applications, shared libraries, and infrastructure code.
Vulnerabilities in third-party dependencies are also relevant when they have a concrete security impact on I14Y or its shipped services and applications.
Please do not publicly disclose a vulnerability before it has been investigated and, where appropriate, remediated.
We ask reporters to coordinate disclosure with the I14Y maintainers so that affected users can be protected before technical details are made public.