Report a security vulnerability

The security of our products is a top priority for us. Should you discover a potential security vulnerability in one of our products, the associated software or firmware, we ask that you report it to us responsibly and confidentially.

You can report a potential vulnerability directly to us using the form below.

This field is for validation purposes and should be left unchanged.
If required, you can provide screenshots, logs or further technical information here.
Drop files here or
Accepted file types: pdf, jpg, gif, png, jpeg, Max. file size: 2 MB, Max. files: 3.

    Options Contact

    Alternatively, you can report security vulnerabilities by email to security@ta-hifi.de.

    Please use this contact method exclusively for security reports. For general enquiries about our products, please contact our standard support team.

    Responsible reporting of security vulnerabilities

    Under our Coordinated Vulnerability Disclosure Policy (CVD), we ask that you investigate any vulnerabilities you discover in a responsible manner and report them to us confidentially in the first instance.

    Please pay particular attention to the following:

    • to access only the data necessary for the investigation,
    • not to alter, delete or view any data unnecessarily,
      not to compromise the availability of our products and systems,
    • not to exploit a vulnerability beyond what is necessary to demonstrate its existence,
    • not to publish information about a vulnerability that has not yet been rectified without prior consultation with us.

    Should you inadvertently gain access to confidential or personal data during your investigation, please cease access and inform us of this in your report.

    Coordinated Vulnerability Disclosure Policy

    Our full CVD Policy contains further information on the responsible reporting of vulnerabilities and on how we handle incoming security reports.

    Download the CVD Policy as a PDF

    What happens after you’ve reported it?

    We review incoming reports and assess the potential vulnerability and its implications.

    If you have provided contact details, we will contact you should we have any queries and, where possible, keep you informed of further developments.

    If a vulnerability is confirmed, we will take the necessary steps to rectify it or mitigate the risk. We ask that you allow us sufficient time to investigate the matter and implement the appropriate security measures.

    Safety instructions

    We publish information here regarding relevant security vulnerabilities that have been rectified and available security updates.

    These advisories may contain information on the affected product, the affected software or firmware versions, the potential impact, and how to rectify the vulnerability.

    There are currently no published security advisories.

    Data Protection

    We use the data provided as part of a security report solely for the purpose of reviewing, processing and responding to your report.

    Please only provide the personal data that is necessary for processing your report. Further information can be found in our privacy policy.