Report vulnerabilities privately to security@akitaengineering.com. Do not open a public GitHub issue or pull request for an unfixed vulnerability.
Please include:
- Affected component (firmware, ATAK plugin, CI, or documentation)
- Version or commit
- Reproduction steps and impact
We will acknowledge receipt and coordinate a fix and disclosure.
Supported releases are the latest coordinated firmware and plugin pair published from main. Older field images should be upgraded rather than patched in place.