If you discover a security vulnerability in this integration, please report it responsibly.
Do NOT open a public GitHub issue for security vulnerabilities.
Instead, use GitHub's private vulnerability reporting so the report stays confidential while it's investigated.
Include:
- A description of the vulnerability
- Steps to reproduce
- Potential impact
You will receive an initial response within 48 hours. We will work with you to understand and address the issue before any public disclosure.
This integration communicates with Ajax Systems cloud servers using the same protocol as the official mobile app. Security concerns may include:
- Credential handling and storage
- Network communication security
- Local file access (photo storage)
- FCM push notification handling
Only the latest release is supported with security updates.