Support · Security · Lifecycle

Support, Security Updates and Lifecycle

On this page, you will find public information on supported versions, Security Updates, security contact and the secure retirement of Password Depot.

Supported Versions Security Updates Security Contact Secure Decommissioning
Scope

Scope

This page applies to Password Depot, Password Depot Enterprise Server, as well as associated clients, extensions, and product-related services provided or managed by AceBIT.

It does not apply to custom developments, unreleased pre-release versions, or customer-modified operating environments, unless expressly agreed otherwise.

Applies to

  • Password Depot (Desktop, Mobile, Browser)
  • Password Depot Enterprise Server
  • Associated clients and extensions
  • Product-related services from AceBIT
Versions & Support

Supported Versions and End of Support

For supported versions, we provide security-related fixes, update information and, where necessary, migration guidance.

Currently supported version

Password Depot 19

Security support until at least December 2030

This support period will not be shortened. Any extension will be announced with reasonable lead time.

Security Support

Security-related fixes or other appropriate remediation measures for supported versions.

Maintenance Support

Bug fixes, compatibility adjustments, and regular maintenance releases within the scope of the respective supported version.

End of Support

After end of support, we generally no longer provide any further security or maintenance updates for the affected version.

We publish information on version changes, end of support, or required migrations in release notes, product information, or provide it on request.

Security Updates

Security Updates and Notices

We communicate security-related fixes through product information and release notes and–if a public security notice is appropriate or necessary–also through our Security Advisories.

Install security-related updates promptly after they are released.
If an immediate update is not possible, we provide guidance on workarounds or other remedial measures wherever practicable.
Which update paths are available for your installation depends on the product, version, and operating mode.

Security Advisories

We publish confirmed and remediated vulnerabilities transparently through our Security Advisories.

View Advisories
Best Practices

Secure Operation

For the operation of Password Depot, we particularly recommend the following:

Use a supported and up-to-date product version
Restrict administrative access to the required personnel
Protect credentials, recovery information, and export files with particular care
Review roles, permissions, and approvals regularly
Observe product-related release notes and security-related notices
Contact

Security Contact

If you would like to report a security-related incident, a specific suspected case, or a security-related issue in connection with your use of Password Depot, please use the following contact channels:

Contact Channels

Security Contact
General Contact

If possible, please provide the following information

  • Organization and a contact person we can reach
  • Affected products, versions, and operating mode
  • Brief description of the incident or suspected issue
  • Known impact and perceived urgency
  • Relevant timestamps as well as any available logs, screenshots, or error messages
  • Immediate measures already taken
Lifecycle

Decommissioning and data removal

If you want to decommission or replace an installation, the process should be planned and documented.

1

Review data and backups

Review which data, backups, logs, and recovery information are still needed.

2

Remove or archive data

Remove or archive local data, configuration files, and export files in accordance with your internal policies.

3

Clean up credentials and keys

Delete or secure credentials, service accounts, key material, and certificates that are no longer needed.

4

Review connected services

For server or multi-user installations, connected services, background processes, and technical dependencies should also be decommissioned in a controlled manner.

If you need product-specific guidance on decommissioning, our support team will assist you within the scope of the available product documentation and your agreements.

Scope

Please report new or suspected product vulnerabilities identified through security research via the Vulnerability Disclosure Policy (VDP).
We publish confirmed and remediated vulnerabilities through Security Advisories.
This page contains public information on security-related support, updates, lifecycle, and security contact details.