JayeX Security

The JayeX project takes security seriously. We make every possible effort to ensure users can adequately secure their automation infrastructure. To that end, we work with JayeX platform and app developers, as well as security researchers, to fix security vulnerabilities in JayeX in a timely manner, and to improve the security of JayeX in general.

Supported Versions

Version Supported
3.x :white_check_mark:

Reporting a Vulnerability

If you find a vulnerability in JayeX, please report it in https://github.com/jenkins-x/jx/security/advisories. Please do not report security issues in the normal github issue tracker.

If you are unable to report using the above method, you can also send your report to the private JayeX maintainers mailing list: jayex@cd.foundation

Vulnerabilities in Apps

Whilst the JayeX team is not responsible for the quality of third party apps, please still use the above reporting mechanism and we will co-ordinate with the app developer to ensure a fix in a secure manner.


Last modified June 24, 2026: fix: update security policy (e04fb43379)