Product Security Incident Response Team (PSIRT)

Coordinated vulnerability disclosure and product security response for Fuller Technologies products, software, services and solutions.

Fuller Technologies maintains a coordinated vulnerability handling process supporting secure products, responsible disclosure, and effective incident response.

What is PSIRT?

The Product Security Incident Response Team (PSIRT) serves as the central coordination point for security vulnerabilities affecting Fuller Technologies products and services. The team evaluates reports, coordinates remediation, communicates with stakeholders and publishes security advisories when required.

Our Mission

Protect customers and partners by ensuring security vulnerabilities are identified, assessed, prioritized, mitigated and communicated in a timely and transparent manner.

Scope

The PSIRT manages reported product vulnerabilities, vulnerability intelligence, coordinated disclosure activities, customer communications and engagement with security researchers.

How We Work

The Fuller Technologies Product Security Incident Response Team (PSIRT) is responsible for identifying, analyzing, assessing, and managing potential security vulnerabilities and security incidents affecting Fuller Technologies products, software, services and solutions.

Our security specialists work closely with development, engineering, quality assurance and product management teams to investigate reported vulnerabilities, evaluate their impact, determine appropriate mitigation measures and coordinate remediation activities. When a vulnerability is confirmed and corrective actions are available, Fuller Technologies may publish a PSIRT Security Advisory containing technical information, affected products, severity ratings, CVE references (where applicable) and guidance to help customers remediate or mitigate the vulnerability.

Coordinated Vulnerability Handling

Security is a shared responsibility. Fuller Technologies encourages security researchers, independent experts, customers, partners and other stakeholders to responsibly report potential vulnerabilities or security weaknesses affecting our products and solutions.

  • Investigate and validate security concerns efficiently
  • Assess risks to customers, systems and operations
  • Coordinate remediation and mitigation activities
  • Communicate transparently with affected stakeholders
  • Continuously improve security and resilience

Fuller Technologies follows a Coordinated Vulnerability Disclosure (CVD) approach and asks reporters to avoid public disclosure until appropriate corrective actions have been developed and communicated.

Vulnerability Response Process

  1. Report Submission
  2. Acknowledgment
  3. Validation and Assessment
  4. Remediation Coordination
  5. Customer Communication
  6. Security Advisory Publication
  7. Continuous Improvement

How You Can Contribute

We welcome responsible vulnerability reports from customers, partners, security researchers, academia and independent security professionals.

  • Contact information
  • Description of the issue
  • Steps to reproduce
  • Affected products and versions
  • Potential security impact

Vulnerability Handling and Disclosure

Fuller Technologies follows a risk-based vulnerability handling process. Reported vulnerabilities are reviewed, validated, prioritized and remediated according to their severity, potential impact and business context.

Where appropriate, Fuller Technologies may publish Security Advisories and coordinate CVE disclosure activities with relevant stakeholders.

Contact the PSIRT

Email: psirt@fullertechnologies.com

Privacy Notice

Fuller Technologies is committed to protecting the privacy and security of individuals who report product security vulnerabilities.

Information submitted to the PSIRT will be processed solely for investigating, validating, remediating and coordinating vulnerability disclosure activities.

Reporter information will only be shared with authorized personnel supporting the vulnerability management process and handled in accordance with applicable privacy and data protection requirements.

Security Researcher Safe Harbor

Fuller Technologies values responsible security research and welcomes reports that help improve the security of our products and solutions.

  • Act in good faith.
  • Respect privacy and confidentiality.
  • Avoid service disruption and unauthorized access.
  • Report vulnerabilities promptly through the PSIRT.
  • Follow Coordinated Vulnerability Disclosure principles.

Fuller Technologies will not pursue legal action against researchers conducting good-faith security research that complies with this policy and applicable laws.