Cyber Security and Product Safety

Purpose of this page

  1. This page provides information on how to report vulnerabilities and security incidents in RAUCH’s IT products, IT systems or IT services.
  2. This page provides information on vulnerabilities and security incidents in IT products, IT systems or IT services that affect our products.

     

Reporting vulnerabilities and security incidents to RAUCH

Should you have identified one or more vulnerabilities in RAUCH’s IT products, IT systems or IT services, we would ask you to report them in confidence via the contact details provided.

Email: Report-vulnerability@rauch.de

 Your report should contain the following information:

  • Affected product, system or service
  • Description of the vulnerability
  • Where applicable, the conditions or situations under which the vulnerability occurred

How we handle reports:

  • Every report we receive is treated confidentially within the legal framework, except for information required for the public disclosure of the security vulnerability
  • Personal data will not be disclosed to third parties without express consent
  • No criminal proceedings will be brought against the person making the report. This does not apply if recognisable criminal intentions have been or are being pursued. 

     

Customer information regarding vulnerabilities and security incidents

We inform our customers about actively exploited vulnerabilities or serious security incidents affecting our products.

The customer notification shall include, where relevant and applicable:

  • A description of the vulnerability / security incident
  • Information on potential impacts
  • Guidance on recommended measures to mitigate risk or resolve the vulnerability

Information on the measures we have taken (e.g. updates).