Vulnerability Submission Guide

We invite global security researchers and users to uncover potential security flaws. Choose any channel below to submit your vulnerability report. We respect your privacy and provide safeguards for anonymous submissions.

TIPS:
Please carefully review the ECOVACS Product Security Center Vulnerability Handling and Rating Standard , Ecovacs Coordinated Vulnerability Disclosure (CVD) Policy before submission.
 - ECOVACS does not tolerate any unauthorized or illegal disclosure of vulnerabilities. If white hats publicly disclose or sell vulnerability reports to external parties without permission, ECOVACS reserves the right to pursue legal liability.
 - No data shall be obtained during testing; if absolutely necessary, the quantity shall not exceed 10 records. Mass data traversal is strictly prohibited.
▼
▼
!
Applicable Scenarios
· Desire quick submission with no extra encryption tools required.
· Vulnerability contains no highly sensitive details; relying on HTTPS.
· Require upload of screenshots, PoC code, videos, logs and other materials.
· Agree to provide an email for status updates. Complex vulnerability details may need follow-up confirmation. (Anonymous email allowed for identity protection.)
· First-time vulnerability submitters.
· Time-constrained users seeking streamlined submission.
Please upload a zip file less than 200MB