Vulnerability Disclosure

Home / Vulnerability Disclosure

Security

How to report a security issue

Dimer Instruments takes the security of our instruments, software, and website seriously. If you have found a security weakness in something we make or run, we want to hear about it.

Email our security team at . We are a small company, so your report goes straight to the people who build and support our products. We will confirm that we received it and keep you informed while we look into it.

Report a vulnerability

What this covers

  • Dimer instruments and their firmware
  • Dimer software, including instrument control and data analysis applications
  • Our website, dimerinstruments.com

For general support or sales questions, please use our Contact Us page or email .

What to include

The more detail you can share, the faster we can confirm and fix the problem. Where you can, please tell us:

  • Which product, software version, or web page is affected
  • What the problem is and what someone could do with it
  • How to reproduce it, or a proof of concept
  • Anything that supports the report: screenshots, logs, or links to related advisories
  • Whether you think the weakness is already being exploited
  • How we can reach you if we have questions

Example email

Copy these lines into your message and fill in what you know.

  1. Product or web page affected:
  2. Version (if known):
  3. What the problem is:
  4. How to reproduce it, or evidence:
  5. How serious you think it is (low / medium / high):
  6. Already being exploited? (yes / no / unknown):
  7. How to contact you:

What happens next

  • We will confirm that we received your report.
  • We will look into it and may contact you with questions.
  • When the problem is fixed, we will let you know.
  • We do not run a bug bounty program, so we cannot offer payment, but we are grateful for your help.

A few requests

To keep our customers and their data safe, please:

  • Only access what you need to show the problem. Do not view, change, or delete data that is not yours.
  • Do not disrupt our systems or people. No denial-of-service tests, phishing, or physical attempts.
  • Give us reasonable time to fix the problem before you share it publicly, and coordinate any disclosure with us.

Thank you for helping us keep Dimer Instruments and our customers secure.

Report a vulnerability