Essential
Required for security and core website functions.
Website security information and responsible disclosure guidance.
Security is treated as an ongoing process. This page describes responsible use of the public website and how to report a suspected vulnerability without making claims about systems or controls that cannot be verified from the public site.
Comversum uses security measures appropriate to the website’s functions, including access controls, protected administration, encrypted web traffic, form protections and operational monitoring. Controls are reviewed and may change as the platform evolves.
If you believe you have found a vulnerability, send a concise, non-sensitive description to info@comversum.com. Include the affected page or function, the observed behaviour and steps that allow the issue to be reproduced safely.
Public forms are intended for ordinary enquiries. Do not send credentials, authentication codes, confidential case files, personal identification documents or other sensitive material through the website unless a secure channel has been specifically agreed.
Some optional website functions can rely on external services. Their security and privacy practices are governed by the relevant provider as well as the configuration used on this website.