Creating a safer future
With the increasing reliance on connected security systems, cybersecurity has become an essential component of physical security. At COMINFO, we are committed to designing and maintaining secure products that meet high standards of reliability, resilience, and trust.
We recognise that no technology is immune to evolving cyber threats. Working with the security community helps us spot weaknesses, improve the security of our solutions, and help protect our customers.
Our Cyber Vulnerability Reporting process is a clear, open way to report suspected security issues affecting COMINFO products and services. When vulnerabilities are disclosed responsibly they can be investigated, validated, and resolved in a timely and coordinated manner.
Every reported vulnerability is handled in confidence by our experts who act transparently when assessing and issue. Submission are evaluated to determine their potential impact, and corrective actions are prioritised based on risk and severity. Where required, we disclose isses with affected parties to help ensure that mitigations and updates are available before public communication.
Through continuous product improvement, secure development practices, and proactive vulnerability management, COMINFO remains dedicated to delivering trusted entrance control solutions that customers can rely on today and in the future. We appreciate the contributions of the security research community in helping us maintain a high level of product security.
Report an Issue
If you believe you have discovered a potential cybersecurity vulnerability affecting a COMINFO product or service, please contact us and provide as much relevant information about the issue as possible. This will help us assess, investigate, and respond to the reported vulnerability effectively.
Report a cyber vulnerability
Our Approach to Cyber Vulnerabilities
When a potential vulnerability is reported, we assess the information provided and investigate the issue to understand its nature, severity, and potential impact. Corrective actions are prioritised according to the level of risk identified.
Where a vulnerability is confirmed, we work to develop appropriate mitigations or updates and, where necessary, coordinate with affected stakeholders before information about the issue is communicated publicly. Our goal is to address reported vulnerabilities responsibly while minimising potential risk to customers and users.
Download Our Handling Policy
Protecting Your Privacy
We believe you should be able to report potential security issues without compromising your safety or privacy. Information provided as part of a vulnerability report is therefore handled confidentially and professionally throughout the assessment and remediation process. We take appropriate care to protect the identity and information of those who responsibly report security concerns to us.