CytoBridge is an educational, synthetic-data LIS and interface simulator. It is not a production clinical system, is not intended for diagnostic or operational use, and must never contain protected health information, real patient identifiers, employer-confidential information, credentials, or proprietary clinical-system configuration.
Security and safety fixes are applied to the current main branch. Historical branches and old commits are not maintained as separate supported releases.
Do not publish sensitive exploit details, credentials, private data, or other harmful material in a public issue.
Use GitHub's private vulnerability-reporting or Security Advisory feature when it is available for this repository. Otherwise, contact the repository owner through the GitHub profile and provide only the minimum information needed to establish a private reporting channel.
A useful report includes:
- The affected file, function, or workflow
- Reproduction steps using synthetic data only
- Expected and observed behavior
- Potential impact
- A proposed mitigation, when known
If real patient data, credentials, private keys, tokens, employer-confidential material, or proprietary clinical-system content is accidentally committed:
- Treat the material as compromised.
- Revoke or rotate affected credentials immediately.
- Remove the material from the current branch.
- Assess whether Git history must be rewritten.
- Document the remediation without reproducing the sensitive material.
Deleting a file in a later commit does not remove it from Git history.
The HL7- and FHIR-style artifacts in this repository are educational simulations. They are not certified, conformance-validated, or suitable for connection to production interfaces. Security review does not convert this project into a clinical product or validate it for patient care.