Security at ambihome

Product security is a high priority for ambihome by JUNG. If you have discovered a vulnerability in an ambihome product, please report it to us. We work with security researchers to remediate vulnerabilities responsibly.

Report a vulnerability

The easiest way is our anonymous web form — no tracking, and anonymous reports are possible:

Report a Vulnerability

Alternatively, by email:

We recommend encrypted transmission via OpenPGP (keys below). We handle reports in German and English alike.

OpenPGP Keys

Please encrypt sensitive reports with our public key.

PSIRT (psirt@ambihome.com)

CSIRT (csirt@ambihome.com)

How we handle reports (CVD policy)

Our Coordinated Vulnerability Disclosure Policy explains how we handle reports — including our safe harbor commitment, response times and coordinated disclosure.

Read the CVD policy

Security advisories

We publish information about vulnerabilities we have already fixed here:

Security Advisories

Machine-readable: security.txt

security.txt

Report a vulnerability

Have you found a security vulnerability in an ambihome product? Report it here — anonymously if you prefer, with no tracking. The description is the only required field.

Please note: your report is forwarded to our security team as an email, without end-to-end encryption. For particularly sensitive information, please send a PGP-encrypted email to psirt@ambihome.com instead.

Privacy notice