Security
Audit Logs
Audit actions taken inside Coder
Secrets
Use sensitive variables in your workspaces
Database Encryption
Encrypt the database to prevent unauthorized access
For other security tips, visit our guide to security best practices.
Security Advisories
If you discover a vulnerability in Coder, please do not hesitate to report it to us by following the instructions here.
From time to time, Coder employees or other community members may discover vulnerabilities in the product.
If a vulnerability requires an immediate upgrade to mitigate a potential security risk, we will add it to the below table.
Click on the description links to view more details about each specific vulnerability.
Description | Severity | Fix | Vulnerable Versions |
---|---|---|---|
API tokens of deleted users not invalidated | HIGH | v0.23.0 | v0.8.25 - v0.22.2 |
See an opportunity to improve our docs? Make an edit.