
Report a Security Vulnerability
The security of INNOVATEST products and the protection of our customers are important to us. We welcome responsible reports from customers, distributors, security researchers and other parties who believe they have discovered a potential security vulnerability.
This page explains how to report a vulnerability and how INNOVATEST handles reported security issues.
How to Report a Vulnerability
Please report potential security vulnerabilities through one of the following channels:
Email: security@innovatest-europe.com
Please do not use the general sales or service contact form or channels for security vulnerabilities.
What Can Be Reported?
You can use this reporting channel for potential vulnerabilities involving:
For ordinary technical problems, calibration questions, software installation assistance or warranty requests, please contact our regular support team.
Information to Include
Please provide as much of the following information as possible:
Please remove passwords, customer measurement data and unnecessary personal information before submitting files.
What Happens After You Report?
After receiving a vulnerability report, INNOVATEST will:
Resolution time depends on the complexity, severity and impact of the vulnerability. INNOVATEST will provide reasonable status updates while the investigation remains active.
Coordinated Vulnerability Disclosure Policy
We ask security researchers to follow these principles:
Prohibited Testing
The following activities are not authorised under this policy:
This policy does not grant permission to perform security testing where you do not otherwise have authorisation.
Good-Faith Security Research
When you act in good faith, comply with this policy and make a reasonable effort to prevent harm, INNOVATEST does not intend to initiate legal action solely because of your security research.
If you are unsure whether your intended testing is permitted, contact service@innovatest-europe.com before proceeding.
Confidentiality and Public Disclosure
Please keep vulnerability information confidential until:
INNOVATEST may publish information about resolved vulnerabilities, including:
INNOVATEST may delay publication when early disclosure could increase the cybersecurity risk to customers.
Security Updates and Product Support
Security updates addressing identified cybersecurity vulnerabilities are provided free of charge during the applicable product support period. Security updates are separate from functional enhancements, optional features or paid software upgrades.
During the applicable product support period, INNOVATEST provides information about relevant security updates and corrective measures. Customers should install security updates within the recommended timeframe, even when the product appears to be functioning normally.
Some software and firmware updates must be installed by an authorised INNOVATEST service engineer. Contact INNOVATEST or your authorised distributor for the correct installation procedure.
Personal Data
Personal data included in a vulnerability report will only be used to:
Please refer to our Privacy Policy for further information.
INNOVATEST Europe B.V.
Borgharenweg 140
6222 AA Maastricht
The Netherlands
Product Security: security@innovatest-europe.com
Telephone: +31 43 352 00 60
General support: service@innovatest-europe.com