Elmdene welcomes reports from customers, researchers, partners, and other stakeholders who identify potential security or privacy vulnerabilities in Elmdene products, software, services, or websites.
If you believe you have identified a vulnerability, please report it by email.
Send your report, including as much detail as possible, to our dedicated inbox.
Email CRA@elmdene.co.ukTo help us investigate and respond effectively, please provide:
Upon receipt of your report, Elmdene will:
Our aim is to acknowledge vulnerability reports within 72 hours of receipt.
Elmdene will treat all vulnerability reports confidentially and use the information solely for the purpose of investigating and resolving the reported issue.
Personal information provided as part of the reporting process will be handled in accordance with applicable data protection legislation and Elmdene's Privacy Policy.
We ask all reporters to follow responsible vulnerability disclosure practices and not undertake any activity that could negatively affect Elmdene, its customers, or third parties.
Specifically, please:
Elmdene appreciates the efforts of security researchers and customers who help us maintain the security of our products and services through responsible disclosure.