Vulnerability Disclosure Policy

TAKAYA Corporation, Industrial Equipment Division ("TAKAYA", "we", "our", or "us") is committed to ensuring that customers can use our products and services with confidence. To this end, we hereby publish our policy regarding the handling of vulnerability*1 information identified internally or externally. In accordance with this policy, we will continue our efforts to provide secure and reliable products and services.

Personal Information Handling Policy

To improve the information security quality of our products and services, we accept vulnerability reports through our Vulnerability Reporting Contact Point in accordance with the Information Security Early Warning Partnership Guidelines*2.

If you would like to report a vulnerability in our products or services directly to us, please use the contact form below:

Vulnerability Reporting Contact Point

For inquiries regarding products that are not manufactured by TAKAYA, please contact the respective manufacturer directly. We will acknowledge receipt of your report within 5 business days from the date of receipt. Please note that responses may take longer during extended holiday periods, including the year-end and New Year holidays, Golden Week, and summer holidays.

Communications submitted through the Vulnerability Reporting Contact Point are encrypted using HTTPS (SSL/TLS). For information regarding the handling of personal information, please refer to our Privacy Policy. Following submission through the contact form, communications with the reporter will generally be conducted via email. For communications conducted via email, we implement appropriate security measures, including encryption, and make every effort to ensure that information is managed securely and appropriately.

Investigation and Remediation of Vulnerabilities

Reported vulnerabilities affecting our products will be investigated primarily by our Design & Development Department and Information Systems Department. If an impact on our products is confirmed, we will prepare and implement appropriate remediation measures.

Disclosure of Vulnerability Information

Information regarding vulnerabilities in our products will be published on the following website:

https://fa-cs.takaya.co.jp/en/login

The disclosure date will be determined after remediation measures have been prepared and following consultation with the reporter and any relevant coordinating organization.

※1: A vulnerability refers to a cybersecurity weakness in a product's system or software that arises from programming defects, design flaws, or similar causes. It does not include physical damage to the product or other physical failures.

※2:Information Security Early Warning Partnership Guidelines A framework established for the purpose of preventing security incidents and related damages.