Incidents & Security Notifications
Security means being prepared
Even the best security measures can't completely prevent incidents from happening.
That's why awork has an established incident response and breach notification process in place to make sure that security-relevant events are quickly identified, assessed, and resolved.
How to report issues
If you notice a potential security incident or vulnerability in awork, you can reach out to our security team anytime by email:
We'll review every report right away and let you know what happens next.
How we handle security incidents
- All security-relevant events are centrally logged and assessed through technical monitoring systems and internal reporting channels.
- awork maintains a documented incident response process that covers technical, organizational, and communication measures.
- This process defines clear responsibilities, escalation paths, and timelines - including the mandatory notification requirements under GDPR.
- After each incident, we analyze the root causes and incorporate any improvements into our Information Security Management System (ISMS).
We provide customers with a summary of our incident response policy or corresponding documentation upon request as part of a security review or audit.
Responsible Disclosure
We appreciate reports from security researchers and users
who help us keep awork secure.
Please report any vulnerabilities you discover responsibly ("Responsible Disclosure")
and don't run tests that could impact other customers' systems or data.
We'll handle your report confidentially and give you feedback as soon as our analysis is complete.
