SSB-2024-001 - Deprecation of Public Instances of Adminer and phpMyAdmin hosted by Scalingo
Scalingo is committed to providing secure and reliable services to our customers. As part of our ongoing efforts to enhance security and promote best practices, we are announcing the deprecation of the public instances of Adminer and phpMyAdmin hosted by Scalingo.
This decision has been made due to the following reasons:
Adminer is no longer maintained: Adminer, one of the tools provided for database management, is no longer actively maintained. The lack of ongoing maintenance and updates poses a significant security risk, as vulnerabilities may not be promptly addressed.
Best Practices for Database Connections: It is considered a bad practice to allow direct database connections from the Internet. To align with industry best practices and enhance the security of our customers’ data, Scalingo is moving away from hosting these tools publicly.
Affected Services
Adminer and phpMyAdmin instances hosted by Scalingo at:
Action Required
Customers are advised to transition to using Scalingo’s secure methods for database access:
- Accessing the Database Console using Scalingo CLI: Detailed instructions can be found at Accessing Database Console with Scalingo CLI.
- Using an Encrypted Connection for local tools: For accessing databases from local tools securely, please refer to Encrypted Tunnel Documentation.
Timeline
2024-01-09 | Announcement of discontinuation on our phpMyAdmin instance welcome page. |
2024-01-15 | Announcement of discontinuation on our Adminer instance welcome page. |
2024-01-25 | Announcement of discontinuation in this Security Bulletin. |
2024-04-01 | Complete discontinuation of Adminer and phpMyAdmin services. |
Support
For assistance in transitioning away from these tools or for any queries related to this deprecation, please contact our support team at support@scalingo.com or via the integrated chat in your dashboard.
Changelog
2024-01-25 First version