Skip to content

Security: EPFL-CePro/eXamc

Security

SECURITY.md

Security Policy

Supported Versions

Only the latest version of eXamc is actively maintained and receives security updates.

Reporting a Vulnerability

If you discover a security vulnerability in eXamc, please do not create a public GitHub issue.

Instead, contact us privately:

cepro-exams@epfl.ch

Please include:

  • description of the vulnerability
  • steps to reproduce
  • potential impact
  • your environment (OS, browser, version)

We will:

  1. Acknowledge your report within 72 hours
  2. Investigate the issue
  3. Provide a fix or advisory

Scope

This policy covers:

  • Source code
  • Authentication & authorization
  • Data handling
  • File uploads
  • Admin interface
  • APIs

Thank you for helping keep eXamc secure!

There aren’t any published security advisories