Report a vulnerability.
Have you discovered a security vulnerability in our systems? Report it to us through this responsible disclosure policy.
At Fuse Solutions, we take security extremely seriously. We do everything we can to protect our systems and our customers' data properly. Even so, a vulnerability in our security may occasionally exist. Have you found such a weak spot? Then we would greatly appreciate it if you shared it with us, so we can resolve the issue quickly and carefully.
What we ask of you
- Report the vulnerability as soon as possible via security@fusesolutions.nl.
- Want to secure your report further? Use our PGP key to encrypt the information.
- Provide enough detail for us to understand and reproduce the issue properly. Think of a URL, IP address, step-by-step description or screenshot.
- Handle what you have discovered responsibly:
- Do not exploit the vulnerability.
- Do not share the information with others until the issue has been resolved.
- Do not take any action beyond what is necessary to demonstrate the issue.
What you should not do
- Do not force access through brute force or social engineering.
- Do not install malware, and do not modify or delete data.
- Do not carry out (D)DoS attacks.
What you can expect from us
- You will receive confirmation of your report within three working days.
- We will assess your report carefully and keep you informed of progress.
- We will do our utmost to resolve the issue as quickly as possible.
- We will treat your report confidentially. We will not share your personal data without your consent, unless we are legally required to do so.
Legal framework
Do you follow the guidelines above? Then we will not take legal action in response to your report. We regard a responsible report as a valuable contribution to our information security.
Contact
Fuse Solutions B.V., De Hofstede 30, 4033 BV Lienden, security@fusesolutions.nl.