01 Security Commitment
Three commitments define how Ikegawa approaches product security across the full lifecycle — from design and manufacturing to response and disclosure.
Continuous Improvement
Security practices are continuously enhanced across the product lifecycle — informed by field data, industry standards, and evolving regulatory requirements such as the EU Cyber Resilience Act.
Responsible Disclosure
We encourage responsible reporting of vulnerabilities and timely assessment. Every report is handled with confidentiality, and reporters are kept informed throughout the process.
Secure by Design
Security is engineered into every Ikegawa product from the ground up. Manufactured in Okayama, Japan under ISO 9001-certified processes, Ikegawa products incorporate hardware-level protection (dedicated Secure Element), secure boot, and encrypted communications.
02 Product Security Foundations
Selected Ikegawa products build on four hardware and process foundations. Availability varies by product model and configuration.
Made in Japan & G7 Trusted OKAYAMA
Transparent supply chain and data protection aligned with G7 expectations — designed, manufactured, and quality-managed in Okayama, Japan.
Secure Boot & Encrypted Communications VERIFIED CHAIN
A verified boot chain ensures only authentic firmware runs on the device, while encrypted communications protect video, audio, and control data in transit.
Certified Secure Element FIPS 140-3 VALIDATED
The integrated Secure Element contains a cryptographic module validated under the FIPS 140-3 Cryptographic Module Validation Program (CMVP), providing hardware-rooted key storage and cryptographic operations for supported products.
Hardware Root of Trust SECURE ELEMENT
A dedicated, tamper-resistant Secure Element provides hardware-level protection for cryptographic keys, device identity, and sensitive data — anchoring device security in silicon rather than software alone.
* FIPS 140-3 validation applies to the cryptographic module inside the Secure Element, not to the end product as a whole. Security capabilities and certifications vary by product model and configuration; please confirm with Ikegawa or your authorized partner for specific SKUs.
03 Vulnerability Disclosure Process
Five stages, one principle: coordinated disclosure. We validate first, fix fast, and publish advisories once a mitigation is available.
Disclosure
Coordinated advisory publication and customer notification.
Remediation
Fix development, regression testing, and release preparation.
Validation
Reproduction and technical verification on affected models and firmware.
Assessment
Triage, severity rating, and impact analysis by the security team.
04 Safe Harbor Statement
Our commitment to good-faith researchers
Ikegawa appreciates and values the contributions of security researchers and good-faith individuals who help improve the security of Ikegawa products and systems. For security researchers who conduct vulnerability research and disclosure in good faith and in accordance with this policy, and whose activities remain within the scope and guidelines set out herein, Ikegawa commits to:
Not initiate legal action or pursue civil liability against them;
Not report their good-faith research to law enforcement;
Where a third party brings legal action against a researcher for such good-faith activity, support them to the extent permitted by law;
Encourage every reporter to submit vulnerability reports without concern or burden.
Scope. This commitment applies only to good-faith research conducted within the scope of this policy, and does not cover malicious or out-of-scope conduct — including unauthorized access to third-party data, disruption of system availability, extortion, or misuse for illegal gain.
05 Security Advisories
Advisories are published here when vulnerabilities are identified, verified, and resolved. Currently there are no published advisories.
No active Ikegawa security advisories are currently published on this page.
06 Report a Vulnerability
Found a potential security issue in an Ikegawa product? Tell us. Please include the information below so we can validate and respond efficiently.
Contact
security@ikegawacctv.comWhat to include
Product model and hardware revision
Firmware version
Issue description and security impact
Step-by-step reproduction instructions
Logs, PoC code, or supporting evidence
Acknowledgement: we aim to acknowledge new reports within 5 business days, and will keep you informed as assessment progresses.
Encrypt your report (PGP)
For sensitive reports, encrypt your email with our public key, or verify it against the published fingerprint below.
PGP FINGERPRINT
C94B A75B 48AC 293A 0998
DCC3 5AFA 6B34 9F01 A3CA
KEY ID
0x5AFA6B349F01A3CA
DOWNLOAD
Identity: Ikegawa Security Team [security@ikegawacctv.com]
