Skontaktuj się z działem sprzedaży/obsługi: 00 800 700 300 01


Product Security & Coordinated Vulnerability Disclosure (CVD) Process

In response to potential threats to cybersecurity, X-Rite has formed a global product security team to assess vulnerabilities and determine responses within a coordinated vulnerability disclosure (CVD) process. These efforts allow the company to continually learn from vulnerability test information submitted to us by customers and security researchers.

Scope

This CVD process applies to the reporting of potential cybersecurity vulnerabilities in X-Rite products and services.

For customer support help requests, technical documents and regulatory contacts and notifications, please contact Support.

Contact Information and CVD Submission Process

Potential security vulnerabilities or privacy issues with a X-Rite product should be reported to: XRPProductSecurity@xrite.com. We ask that you please refrain from including sensitive information (e.g., sample information, PII, usernames, passwords, etc.) as a part of any submissions to X-Rite. Please provide the following information in your submission:

Your contact information (e.g., name, address, phone number and email)

What Happens Next

Upon receipt of a potential product vulnerability submission, X-Rite will:

Disclaimer

X-Rite considers it a top priority to protect the security and safety, as well as the personal information, of our customers.

When conducting your security research, please avoid actions that could cause harm to you, other customers or products. Note that vulnerability testing could negatively impact a product. As such, testing should not be conducted on active products in a productive environment, and products subjected to security testing should not subsequently be used in a productive environment. If there is any doubt, please contact a X-Rite representative.

X-Rite reserves the right to modify its coordinated vulnerability disclosure process at any time, without notice, and to make exceptions to it on a case-by-case basis. No particular level of response is guaranteed. However, if a vulnerability is verified, we will attribute recognition to the researcher reporting it, if requested

CAUTION: Do not include sensitive information (e.g., sample information, PII, usernames, password, etc.) in any document submitted to X-Rite. Comply with all laws and regulations in the course of your testing activities.

By contacting X-Rite, you agree that the information you provide will be governed by our site's Privacy Policy and Online Terms of Use.

Note: When sharing any information with X-Rite, you agree that the information you submit will be considered non-proprietary and non-confidential and that X-Rite is allowed to use such information in any manner, in whole or in part, without any restriction.



Masz pytania? Potrzebujesz wyceny? Skontaktuj się z nami. 00 800 700 300 01