A Better Nanoleaf Experience Is Here! We’re still fine-tuning a few things...

Some updates, including translations and rewards, are still rolling out as we put the finishing touches in place.

Signaler des problèmes de sécurité des produits

Nous attachons une grande importance aux questions de sécurité et encourageons tous les chercheurs en sécurité à nous signaler les vulnérabilités potentielles afin d'améliorer la sécurité de nos produits et services.

Report Vulnerabilities

Please use Nanoleaf's public PGP key (noted above) to encrypt sensitive information you send to us by email:

If you've discovered a security or privacy vulnerability, please reach out to us at product-security@nanoleaf.me.

Nanoleaf actively tries to identify and reduce potential vulnerabilities during the product's entire lifetime and
in this effort, we value input on actual or potential vulnerabilities as that gives us a possibility to address
these issues and protect connected product.

When reporting, please consider the following:

  1. Use the provided PGP key to encrypt your email submissions.
  2. Include a detailed technical description of the concern or vulnerability.
  3. Provide your contact information (such as phone number, email, and name) so we can reach out if necessary.
  4. Attach or include any additional information, such as tools used or configurations that led to discovering
    the issue.
  5. If you've shared vulnerability information with coordinators like ICS-CERT, CERT/CC, NCSC, or others, kindly
    inform us and provide their tracking number, if available.
  6. If you've identified specific threats, assessed the risk, or witnessed exploitation, please include this
    information encrypted with PGP.

After submitting your report, our Technical team will evaluate your case and stay in touch with updates on its
progress. We endeavor to respond to security reports within 1-2 weeks.

For further information on our product support policy, visit this page.