Nietzsche Enterprise Co., Ltd. (NHR)
This policy applies to NHR P02 and P08 series products and their supplied firmware. Customer-operated receiving systems, platforms and third-party services are outside its scope. Issues involving third-party services should also be reported to their respective providers.
Please report suspected vulnerabilities to our vulnerability reporting mailbox:
Include the product model, firmware version, issue description, reproduction steps, potential impact, relevant screenshots or logs, and a contact email address. Do not include passwords, private keys, SIM authentication secrets or unnecessary personal data. Contact us first to arrange the transfer of sensitive evidence.
We will acknowledge reports within 7 calendar days of receipt and assess their applicability and risk based on the information provided. We may contact the reporter for additional details.
While an issue remains unresolved, we will provide progress updates at least every 30 calendar days and communicate significant changes in the assessment or response plan. Updates will continue until resolution. If an issue is assessed as not applicable or not confirmed as a vulnerability, we will explain the reason for closing the case. Response measures and completion times depend on the individual assessment.
We will assess appropriate measures based on risk, actual product capabilities and feasible options, and provide risk-reduction guidance where needed. This policy does not imply remote firmware update capability or guarantee that every issue can be corrected through software.
Avoid unauthorized access, modification or deletion of data, disruption of normal operations, or misuse of vulnerabilities. This policy does not authorize testing. We welcome coordination on the timing and content of public disclosure to reduce the risk of misuse. Thank you for helping improve product security.
Policy version: 1.2 | Last updated: 24 September 2026