Vulnerability handling process

How to Submit

Thank you for reporting a security vulnerability. Please complete this form as fully as possible and submit it via either: (1) psirt@infypower.com; or (2) the online report form. To protect sensitive details, please encrypt using our PGP key (fingerprint: [F6B59934E5B3EBE51FB02869164BCF63D4C8A1CC]).

You may report anonymously. We commit not to take legal action against reporters acting in good faith and in compliance with this policy (safe harbour), to keep reporter identity and vulnerability details confidential, and to share them only to the minimum extent necessary (e.g. with component suppliers for coordinated remediation).

We will acknowledge receipt within [5] working days and keep you informed as the report is processed.


To help us assess and remediate reported vulnerabilities efficiently, please provide relevant details using our Security Vulnerability Report Template available below.

04_Security_Vulnerability_Report_Form.docx



For the protection of sensitive vulnerability information, we recommend encrypting your report using our PGP public key before submission.

Infypower_0x164BCF63D4C8A1CC_public.zip