Security Policy

SeRo Systems Coordinated Vulnerability Disclosure Policy

At SeRo Systems, we take the security of our aviation monitoring solutions seriously. If you are a security researcher and have discovered a vulnerability in our SaaS platform or digital products, we appreciate your help in disclosing it to us responsibly.

How to Report

Please report your findings via the contact form at https://www.sero-systems.de/contact-us. Include a proof of concept, steps to reproduce, and the potential impact.

Our Commitments

  • We will acknowledge receipt of your report within two business days.
  • We will not take legal action against you (Safe Harbor) if you provide us with a reasonable opportunity to remediate the issue before public disclosure, and do not exploit, alter, or exfiltrate our data or customer data.
  • We do not offer cash rewards (bug bounties) at this time, but we gladly acknowledge helpful researchers on our Security Acknowledgments page.

Scope