Security does not end when a product leaves our factory. If you discover a vulnerability in one of our products, we want to hear about it, before someone else takes advantage of it.
Our Product Security Incident Response Team receives reports on security vulnerabilities in the MX product family, the AZ product family, and our operating and visualization software. We review every report, keep you informed as we work on it, and agree on a disclosure timeline together with you.
PGP Fingerprint
1D5F 742D 861D 1F0F E092 3A7D 6FFC 84D1 027E E0FF
Coordinated Vulnerability Disclosure Policy
This page summarizes our policy. The full document is the authoritative version and is the one to cite or archive.
What this policy covers
This policy applies to all E+H Metrology products:
Third-party products, corporate IT, and our website are out of scope unless the issue affects product security. Found something outside this scope? Contact us anyway and we will route it internally.
What to include
The more of this you can give us, the faster we can act (Reports in German and English are both welcome):
What you can expect