Coordinated Vulnerability Disclosure & Cyber Incident Reporting (CRA)

Dear Customer,

In accordance with the European Cyber Resilience Act (EU Regulation 2024/2847), ACMA S.p.A. is strongly committed to ensuring the cybersecurity of its products with digital elements throughout their lifecycle.

To comply with the operational requirements of Article 14 (applicable from September 11, 2026), ACMA S.p.A. provides a dedicated channel for customers and security researchers to report actively exploited vulnerabilities or severe cybersecurity incidents affecting our machinery.

If you detect a potential threat, please use our Remote Production Assistance (RPA) platform immediately to allow our team to analyze the event and, where required by law, trigger the official notifications to ENISA and competent National CSIRTs within the mandatory 24-hour window.

Cyber Security Contact: RPA and incident e-mail vulnerability.support@acma.it

Product Security Incident Response Team

Download and read