
The security of our products is our highest priority. If you have discovered a potential security vulnerability in a TQ product, we encourage you to report it to us. By following a responsible disclosure process (Coordinated Vulnerability Disclosure), you help us analyze vulnerabilities promptly and take appropriate measures to protect our customers.
How we handle Vulnerability Reports
TQ-Group follows the process below for vulnerability reports:
These timelines are target service levels for the initial response only. Time to remediation depends in particular on severity, complexity, availability of safe mitigations, supply-chain dependencies, and regulatory requirements.
How to Report a Security Vulnerability
Vulnerability reports must be submitted exclusively to TQ-Group’s central security contact point:
Reports may also be submitted anonymously or under a pseudonym. In such cases, the ability to communicate and coordinate may be limited.
Report a Security Vulnerability
To help us assess your report efficiently, please provide as much of the following information as possible:
Where possible, reports should additionally include a CVSS assessment, log excerpts, redacted screenshots, references to affected third parties, and suggestions for coordinated disclosure.
Here we publish information about known security vulnerabilities affecting TQ products, including available security updates and recommended mitigation measures.
There are currently no published Security Advisories for TQ products. This section will be updated regularly as new security-related information becomes available.