Security

InPlay Vulnerability Disclosure Policy

VDP — Last updated March 2026

At InPlay's Product Security Incident Response Team, we take the security of our products seriously. The following Vulnerability Disclosure Policy (VDP) outlines the process of accepting and responding to potential security vulnerabilities involving InPlay semiconductor and firmware products.

We encourage individuals, security researchers, and other stakeholders who discover potential vulnerabilities to help us maintain the security and integrity of our products.

Reporting a Vulnerability

  1. a.

    Provide a detailed description of the vulnerability, including steps to reproduce it, potential impact, and any supporting materials.

  2. b.

    Submit via email to IPSIRT@inplay-tech.com or contact@inplay-tech.com.

  3. c.

    Allow a reasonable time to investigate before disclosing publicly. We commit to acknowledging your report within 7 business days.

Our Commitment

  1. a.

    Promptly acknowledge receipt and assign a tracking number.

  2. b.

    Work diligently to validate the reported vulnerability and assess its severity.

  3. c.

    Maintain clear and timely communication throughout the remediation process.

  4. d.

    Take appropriate steps to address the vulnerability, including patches or firmware updates.

Have a vulnerability to report?

IPSIRT@inplay-tech.com