# Cavea® GmbH - Security and Vulnerability Disclosure # Real-Time Locating Systems · Goslar, Germany # # If you have found a vulnerability in a Cavea® hardware product, # in our firmware, in the Cavea® tracking platform, or in a web # service operated under cavea.net, please report it to us. # Full policy, scope and response commitments: https://www.cavea.net/security Contact: mailto:psirt@cavea.net Expires: 2027-09-11T23:59:59.000Z Preferred-Languages: en, de Canonical: https://www.cavea.net/.well-known/security.txt Policy: https://www.cavea.net/security # Policy version 1.0, 11 September 2026. # We acknowledge reports within 3 business days, share an initial # assessment within 10 business days, and target a released fix # within 90 days. Security research conducted under our policy is # considered authorised.