Skip to content

Security: Christian-2003/password-vault

SECURITY.md

Security Policy

This document contains information regarding the security of Password Vault.

Table of Contents
  1. Data Encryption
  2. Security Updates
  3. Reporting a Vulnerability

Data Encryption

Password Vault encrypts your data using AES / GCM to ensure maximum security. The following table shows which versions use this encryption mode for different purposes:

Code Version Data Backup User Password Autofill Cache Password Recovery
37 3.7.4 1
33 3.7.3 1
29 3.7.2 1
26 3.7.1 1
24 3.7.0 1
22 3.6.2 1
21 3.6.1 1
202 3.6.02 1
19 3.5.6 1
18 3.5.5 1
1 3.5.4 1
1 3.5.3 1
1 3.5.2 1
1 3.5.1 1
1 3.5.0 1
1 3.4.0 1
1 3.3.0 1
1 3.2.1 1
1 3.2.0 1
1 3.1.0
1 3.0.0
1 2.2.1
1 2.2.0
1 2.1.0
1 2.0.0
1 1.0.1
1 1.0.0

1 Backups can be encrypted, but they do not have to be encrypted.
2 Version 3.6.0 is only available on the Gooogle Play Store for internal testing.


Security Updates

Security vulnerabilities are patched as soon as they are noticed. However, such patches are only provided to the newest version. Users are not notified about security updates and are advised to update to new app versions as soon as they are released. Notifications on app updates are provided through the app.


Reporting a Vulnerability

If you find any security-related bugs in our product, please notify our development team through passwordvault@christian2003.de and provide as many details as possible, such as steps for reproduction.



2025-04-04
© Christian-2003

There aren't any published security advisories