Vulnerability Report · Vulnerability Management Process
Vulnerability Management Process›Vulnerability Report
< Return to Vulnerability Management Process

Vulnerability reporting channels

If you think you have found a security or privacy vulnerability in our products, you can fill out the relevant form Template ,and direct security questions to the iotsecurity@cn.gree.com. Typically, you should receive a confirmation email from our Security Response Team within 24 hours. We will keep you updated on the progress of the issue as it is being addressed.


Confidentiality mechanism

Given the sensitive nature of vulnerability information, to ensure its confidentiality, we recommend encrypting the information to be transmitted using PGP (Pretty Good Privacy). iotsecurity@cn.gree.com our PGP public key, which can be obtained by clicking.Here.

Throughout the entire vulnerability handling process, we have strictly controlled the dissemination of vulnerability information, disclosing it only to authorized personnel. At the same time, we also require the reporter to maintain the confidentiality of the vulnerability information until our customers have developed a comprehensive solution.

For valid security vulnerability reports, with the reporter’s consent, we will include a note of acknowledgment in our official security advisories.