Security Support
Security-related fixes or other appropriate remediation measures for supported versions.
On this page, you will find public information on supported versions, Security Updates, security contact and the secure retirement of Password Depot.
This page applies to Password Depot, Password Depot Enterprise Server, as well as associated clients, extensions, and product-related services provided or managed by AceBIT.
It does not apply to custom developments, unreleased pre-release versions, or customer-modified operating environments, unless expressly agreed otherwise.
For supported versions, we provide security-related fixes, update information and, where necessary, migration guidance.
Security support until at least December 2030
This support period will not be shortened. Any extension will be announced with reasonable lead time.
Security-related fixes or other appropriate remediation measures for supported versions.
Bug fixes, compatibility adjustments, and regular maintenance releases within the scope of the respective supported version.
After end of support, we generally no longer provide any further security or maintenance updates for the affected version.
We publish information on version changes, end of support, or required migrations in release notes, product information, or provide it on request.
We communicate security-related fixes through product information and release notes and–if a public security notice is appropriate or necessary–also through our Security Advisories.
We publish confirmed and remediated vulnerabilities transparently through our Security Advisories.
View AdvisoriesFor the operation of Password Depot, we particularly recommend the following:
If you would like to report a security-related incident, a specific suspected case, or a security-related issue in connection with your use of Password Depot, please use the following contact channels:
If you want to decommission or replace an installation, the process should be planned and documented.
Review which data, backups, logs, and recovery information are still needed.
Remove or archive local data, configuration files, and export files in accordance with your internal policies.
Delete or secure credentials, service accounts, key material, and certificates that are no longer needed.
For server or multi-user installations, connected services, background processes, and technical dependencies should also be decommissioned in a controlled manner.
If you need product-specific guidance on decommissioning, our support team will assist you within the scope of the available product documentation and your agreements.