Surveillance equipment guards other people's property; it has to be trustworthy itself. This page collects everything we publish about how our products are built, signed, and fixed — so you can verify rather than assume.
Every compliant product ships with a declaration backed by a maintained component-origin register. Auditors may request the underlying BOM documentation under NDA.
Hardware and firmware engineering in Taipei; SMT and assembly in our group facility in Taiwan. No design, code, or manufacturing dependencies on entities named in §889.
CE, FCC, and BSMI certifications maintained per product line, with additional market-specific approvals handled per OEM program.
| Practice | What it means for you |
|---|---|
| Signed firmware | Devices verify firmware signatures before install. Updates are distributed only through official channels listed under Support. |
| SBOM | A software bill of materials is generated for release firmware and available to OEM partners and enterprise customers on request. |
| Encrypted transport | HTTPS device management; SIP over TLS with SRTP media on access products; SRTP options on camera streams. |
| Hardening guides | Deployment hardening documentation for integrators — default-credential elimination, network segmentation, and update policy. |
| Vulnerability response | A published intake channel, acknowledgement targets, and public advisories. See PSIRT below. |
We treat every good-faith report as a gift. If you believe you have found a security issue in an AVTECH product, tell us directly and we will work with you on a coordinated disclosure.
Include the product model, firmware version, and reproduction steps. PGP key available on request. We acknowledge reports within 3 business days and aim to provide a remediation plan within 30 days for confirmed issues. We do not pursue legal action against good-faith research.
Confirmed vulnerabilities receive a public advisory with affected versions and fixed firmware, and reporters are credited unless they prefer otherwise. Advisories are listed below and announced through partner channels.
We would rather answer your security questionnaire before the purchase order than after an incident. Compliance documentation and factory audits are available to qualified partners.