Coordinated Vulnerability Disclosure Policy
Scope. This policy applies to products with digital components from Hawa Dynamics S.L.U. (Motion4), including the Versa Mini door operator and its firmware.
How to report. If you have discovered a potential security vulnerability, please contact us at info@hawadynamics.com. Include:
- Affected product and firmware version.
- Description of the vulnerability and its potential impact.
- Steps to reproduce it (PoC if possible).
- Your name/alias for acknowledgement (optional).
Our commitment. We will acknowledge receipt within 72 hours, provide an initial assessment within 10 business days, and keep you informed of progress until resolution.
Coordinated disclosure. We will work with you to understand and resolve the issue. We kindly request that you do not publicly disclose the vulnerability until we have released a fix, with an indicative timeframe of 90 days from the report. We will coordinate the disclosure date with you.
Safe harbor. We will not take legal action against individuals who investigate and report in good faith under this policy, provided they do not access third‑party data, degrade service performance, or disclose information before a fix is available.
Languages. We accept reports in Spanish and English.
Last updated: 25/08/2026


