Security Reporting and Update Policy
At Domar Solutions we take product security seriously. This page explains how to report security vulnerabilities in our products and describes how long we provide security updates. The information here is provided in accordance with the UK Product Security and Telecommunications Infrastructure (PSTI) Act and associated Regulations, which require manufacturers to publish information on how to report security issues and minimum security update periods.
Report a Security Vulnerability
If you believe you have found a security vulnerability in one of our products, please let us know. We welcome responsible disclosure and will investigate all genuine reports. Our process aligns with guidance from the UK National Cyber Security Centre (NCSC), which recommends providing an easy‑to‑find contact route for vulnerability reporting via a dedicated email address or secure web form.
- Email: security@domar.com
- Online form: domar.com/support
- Phone: 0203 695 0315 (during business hours)
When submitting a report, please provide as much detail as possible, including:
- A concise summary of the vulnerability and where it can be found (web address, product model, firmware version etc.).
- Steps to reproduce the issue and any proof‑of‑concept code or screenshots.
- The potential impact (e.g. unauthorised access, data leakage, denial of service).
- Your preferred contact details, if you would like us to follow up.
You may report anonymously if you prefer; we will still evaluate your report. All vulnerability information is handled confidentially and shared only with staff who need it in order to triage and remediate the issue.
What to expect: We will acknowledge receipt of your report within 48 hours. Our security team will investigate and, if necessary, contact you for more information. We commit to providing status updates on a weekly basis until the vulnerability is resolved. Once remediation is available we will let you know so you can verify the fix.
Please refrain from publicly disclosing vulnerability details until we have confirmed a fix is available. If you discover a vulnerability outside the scope of our products (for example, in a third‑party platform), please contact the relevant vendor directly.
Security Update Policy
In line with the PSTI Regulations, we publish the minimum period during which we will provide security updates for each product model. For the Zxtech CCTV cameras and recorder and similar devices, we guarantee security updates until 30th April 2027. During this defined support period we will issue firmware updates to address security vulnerabilities and other critical issues.
If we extend the support period beyond 30th April 2027, we will update this page and notify customers as soon as practicable. Security updates are provided free of charge. You do not need to register or provide personal information to receive updates. Please ensure your device remains connected to the internet or check our support page periodically to download the latest firmware.
We recommend keeping your device’s firmware current to maintain protection against emerging threats. If you have any questions about update availability or would like assistance applying an update, please contact our support team via the methods listed above.
Legal & Privacy Notes
This page forms part of our compliance with the UK PSTI Act and related Regulations. Our general Terms of Service, Privacy Policy and other policies continue to apply. By submitting a vulnerability report, you confirm that you will not exploit the vulnerability and that you will not access, modify or destroy data belonging to others.
We will process any personal data provided in a vulnerability report only for the purpose of managing and resolving the reported issue. We will retain this information in accordance with our Privacy Policy and will not share it outside Domar Solutions except as required to investigate and fix the vulnerability or as required by law.