Report a Vulnerability
We welcome reports of potential security vulnerabilities affecting our products, software, services, or related digital elements. Reports submitted through our official channels are reviewed by our security team and entered into our internal tracking process.
Vulnerabilities Reporting Channel
To report a vulnerability, email us at
CRA.EventReport@trinasolar.com
What to Include:
• Product name
• Product version, build number, or model, as applicable
• Platform, environment, or deployment context
• Description of the potential vulnerability
• Steps to reproduce
• Proof of concept or exploit details, if available
• Observed or potential impact
• Screenshots, logs, traces, or other relevant evidence
• Your preferred contact information for follow-up communication
Acknowledgment and Follow-up
Upon receipt of your report, TrinaStorage will assign an internal tracking reference, acknowledge receipt within 24 hours, review the report, request further information where needed, and provide follow-up communication where appropriate.
Coordinated Disclosure
Trina Storage operates a Coordinated Vulnerability Disclosure (CVD) mechanism. We ask reporters not to publicly disclose a vulnerability before remediation and coordinated publication have taken place, unless otherwise agreed in writing.
Disclosure timelines may vary depending on severity and exploitability, product impact and user risk, remediation availability, supply chain coordination needs, and other case-specific factors.