aTrain Security Policy

September 3, 2026 ยท View on GitHub

Please do not open an issue for critical vulnerabilities! Please read below ๐Ÿ‘‡

Supported Versions

Current version are found on flathub and the Microsoft store.

Old versions are available for download under https://business-analytics.uni-graz.at/en/research/atrain/, but they do not receive security updates.

Reporting a Vulnerability

Please contact us directly via atrain@uni-graz to report a vulnerability. Please add at least the following details:

  • name the subject "Security issue with aTrain"
  • a short summary
  • a guide on how to use the vulnerability for an attack
  • a note, whether you have a patch or want to submit a patch
  • a short line, whether you want your credentials being published with a patch released

(adapted from https://github.com/openqda/openqda/edit/main/SECURITY.md)

Release builds are code-signed; see the Code signing policy.