Gå til hovedinnhold

Responsible disclosure policy

Jotron is committed to ensuring a high level of information security and to protecting the confidentiality, integrity and availability of our systems, products and services. This responsible disclosure policy describes how to report security vulnerabilities to Jotron and how we handle such reports.

If you believe that you have found a security vulnerability, we ask that you report it responsibly. Please send your findings to security [a] jotron.com (replace [a] with @)

To help us investigate, please include:

  • A clear description of the vulnerability
  • The affected system, product or URL
  • Steps to reproduce the issue
  • Potential security impact
  • Any supporting information (screenshots, logs etc.)
  • Your name and preferred contact details (optional)

We ask that you:

  • Do not exploit the vulnerability beyond what is necessary to demonstrate it
  • Keep the vulnerability confidential until it has been resolved
  • Do not disrupt services, systems or normal operations

Jotron commits to:

  • Acknowledge the receipt of your report
  • Assess and validate the reported issue
  • Perform mitigation in accordance with internal procedures
  • Not pursue legal actions towards those who discover and report vulnerabilities in accordance with this policy

Any person’s private information will be treated according to Privacy policy.

This policy may be updated at any time. The latest version will always be available at Jotron.com

Thank you for helping keep Jotron’s systems and products secure.