Product Security

Portwell is committed to building secure products and responding responsibly to product cybersecurity vulnerability reports throughout the support lifecycle.

Policy

Coordinated Vulnerability Disclosure (CVD)

Portwell values vulnerability reports from independent security researchers, customers, and partners. We follow CVD principles to handle suspected vulnerabilities responsibly, prioritizing customer risk reduction in alignment with our IEC 62443-4-1 certification and the EU Cyber Resilience Act (CRA).

Reporting

Report a Vulnerability

If you identify a potential security vulnerability in Portwell products, supported software/firmware, or official websites, please report it to us immediately. Use our structured information guide and secure PSIRT email channel to submit your findings.

Security Advisories

Our security advisories include vulnerability descriptions, affected products, risk information, and available mitigations or security updates.

Currently, there are no security advisories published at this time. We will update this section as soon as new information or vulnerability patches are released.