Perimed vulnerability disclosure statement
We are committed to ensuring the security and integrity of our products, services, and the data entrusted to us by our customers. We take vulnerabilities seriously and aim to address them promptly to protect our users and subjects measured by our instruments.
Reporting a vulnerability
If you believe you have discovered a security vulnerability in a Perimed product or service, we encourage you to report it to us responsibly. Please provide as much detail as possible, including:
- A description of the vulnerability.
- The steps required to reproduce the issue.
- Any potential impact or risks associated with the vulnerability.
- Your contact information for follow-up (an email address is sufficient, all other details are optional).
- Reports can be sent through the form below or to our dedicated security email address: security@perimed-instruments.com
We kindly request that you:
- Avoid exploiting the vulnerability, including accessing, modifying, or deleting any data.
- Refrain from publicly disclosing the vulnerability until we have addressed it.
Our commitment
When a vulnerability is reported, we will:
- Acknowledge receipt of your report.
- Investigate the issue and assess its impact.
- Work diligently to develop and implement a fix or mitigation.
- Communicate progress and resolution status to you.
Scope
This disclosure policy applies to all Perimed products and services, including hardware devices, software, and associated web platforms.
Good faith research
We support good-faith security research and appreciate the contributions of ethical researchers.
Perimed will not pursue legal action against individuals who:
- Follow this disclosure policy in good faith.
- Conduct their research in a way that avoids harm to our customers or systems.
- Cooperate with us to resolve the identified vulnerability.
Recognition
While Perimed does not offer a bug bounty program at this time, we value the contributions of the security community and may publicly acknowledge your efforts with your consent.
Non-proprietary and non-confidential
If you share information with us, you automatically agree that the information you submit is considered non-proprietary and non-confidential. You agree that Perimed is allowed to use such information in any manner, in whole or in part, without any restriction. You agree that submitting information does not create any rights for you or any obligation for Perimed.
Report a vulnerability
If you have any questions about this policy, please contact us at security@perimed-instruments.com.
Thank you for helping us maintain the highest standards of security and trust.