Skip to content

Security: LarsLaskowski/F1-Telemetry

SECURITY.md

Security Policy

Supported Versions

Only the most recent release of F1-Telemetry is supported with security updates. Security fixes are delivered exclusively in the newest release and the latest Docker image tags (networlddev/f1-telemetry and networlddev/f1-telemetry-app). Older versions and image tags do not receive patches — please upgrade to the current version before reporting an issue.

Version Supported
latest (current)
older

Reporting a Vulnerability

Please do not report security vulnerabilities through public GitHub issues.

Instead, use one of the following private channels:

  • GitHub Private Vulnerability Reporting: open a report via the repository's Security tab → Report a vulnerability (preferred).
  • Email: send details to Development@e-networld.de.

Please include as much of the following as possible to help us triage quickly:

  • a description of the vulnerability and its potential impact,
  • the affected version or Docker image tag,
  • steps to reproduce or a proof of concept,
  • any relevant logs or configuration.

What to expect

  • We aim to acknowledge your report within 5 business days.
  • We will keep you informed about the progress towards a fix.
  • Please give us a reasonable amount of time to address the issue and publish a fix before any public disclosure.

There aren't any published security advisories