Out of Scope: Volumetric attacks (DDoS), social engineering (phishing) against our employees, or physical security attacks against our facilities.
Please report potential vulnerabilities to our product security team via:
Email: [email protected]
or Web-from on this page.
Please include the product version, environment details, and a proof-of-concept (PoC) or steps to reproduce the issue.
We adhere to the following coordinated disclosure timeline:
AcknowledgementWithin 48 hoursA human analyst will confirm receipt of your report and provide a secure tracking identifier.
Triage and AssessmentWithin 7 daysWe will validate the vulnerability, assess its severity, and determine if it meets the criteria for active exploitation.
RemediationWithin 90 daysWe will develop and release a corrective measure (patch or firmware update) to mitigate the vulnerability.
Coordinated DisclosurePost-PatchOnce users have had time to apply the update, we will publicly disclose the vulnerability and appropriately credit the researcher.