Topper red
Topper red

Product Security (PSTI) Statement of Compliance

 

Glen Dimplex Heating and Ventilation (“GDHV”) is part of the Glen Dimplex Group. GDHV is a division of Glen Dimplex UK Limited and trades through Dimplex (registered in England and Wales No.01313016). 

The other part of the GDHV UK business trades through Ability Projects Ltd (registered in England and Wales No.04088764). In Ireland, GDHV trades through Glen Dimplex Ireland uc (registered in Ireland no. 63319). Dimplex and Ability Projects Ltd are at Millbrook House, Grange Drive, Hedge End, Southampton, Hampshire, SO30 2DF. Glen Dimplex Ireland are at Airport Road, Cloghran, Co. Dublin K67 DT89. Together with any group companies (“we” “us” and “our”) are committed to protecting and respecting your privacy.

 

Information On How to Report Security Issues 

 

Protecting our customers from threats to their security is always an important task for Glen Dimplex UK Limited

As a key player in global Networking and Smart Home markets, we will do our utmost to provide our users with secure stable products and services, and to strictly protect the privacy and security of their data. 

We welcome and encourage all reports related to product security or user privacy. We will follow established processes to address them and provide timely feedback. 

 

Report Vulnerabilities to Glen Dimplex UK Limited

 

We strongly encourage organizations and individuals to contact Glen Dimplex UK Limited’s security team to report any potential security issue. To report a security or privacy vulnerability, please contact via the Privacy Policy or please send an email to [email protected] with the product model and software version, describe the detailed security issue to us. Glen Dimplex UK Limited will endeavor to respond to the report within 10 working days.

Glen Dimplex UK Limited will need to obtain detailed information about the reported vulnerability to more accurately and quickly begin the verification process. 

 

Responsible Reporting Guidelines 

 

  1. All parties to a vulnerability disclosure should comply with the laws of their country or region.
  2. Vulnerability reports should be based on the latest released firmware, and preferably written in English.
  3. Report vulnerabilities through the dedicated communication channel. Glen Dimplex UK Limited may receive reports from other channels but does not guarantee that the report will be acknowledged.
  4. Adhere to data protection principles at all times and do not violate the privacy and data security of Glen Dimplex UK Limited’s users, employees, agents, services or systems during the vulnerability discovery process.
  5. Maintain communication and cooperation during the disclosure process and avoid disclosing information about the vulnerability prior to the negotiated disclosure date.
  6. Glen Dimplex UK Limited is not currently operating a vulnerability bounty program. 

 

How Glen Dimplex UK Limited deals with Vulnerabilities 

 

Awareness > Verification > Remediation > Notification

 

Glen Dimplex UK Limited encourages customers, vendors, independent researchers, security organizations, etc. to proactively report any potential vulnerabilities to the security team. At the same time, Glen Dimplex UK Limited will proactively obtain information about vulnerabilities in Glen Dimplex UK Limited products from the community, vulnerability repositories and various security websites. In order to be aware of vulnerabilities as soon as they are discovered. 

Glen Dimplex UK Limited will respond to vulnerability reports as soon as possible, usually within 10 business days

Glen Dimplex UK Limited security will work with the product team to perform a preliminary analysis and validation of the report to determine the validity, severity, and impact of the vulnerability. We may contact you if we need more information about the reported vulnerability. 

Once the vulnerability has been identified, we will develop and implement a remediation plan to provide a solution for all affected customers. Remediation typically takes up to 90 days and in some cases may take longer. You can keep up to date with our progress and the completion of any remediation activities. 

Glen Dimplex UK Limited will issue a security advisory when one or more of the following conditions are met:

  1. The severity of the vulnerability is rated CRITICAL by the Glen Dimplex UK Limited security team and Glen Dimplex UK Limited has completed the vulnerability response process and sufficient mitigation solutions are available to assist customers in eliminating all security risks.
  2. If the vulnerability has been actively exploited and is likely to increase the security risk to Glen Dimplex UK Limited customers, or if the vulnerability is likely to increase public concern about the security of Glen Dimplex UK Limited products, Glen Dimplex UK Limited will expedite the release of a security bulletin about the vulnerability, which may or may not include a full firmware patch or emergency fix. 

 

Information on Minimum Security Update Periods 

 

The Support Period for Glen Dimplex UK Limited components is actively maintained considering security updates from May 2026 to Jan 2028. 

*This list is constantly being updated and subject to change without notice.

ModelsVersionsDescription

ECRE1801

V1.0

ECR EDGE 1725-1878W Oil Free Radiator

ECRE1801-EU

V1.0

ECR EDGE 1725-1878W Oil Free Radiator

ECRE2401

V1.0

ECR EDGE 2.4kW Oil Free Radiator

ECRE2401-EU

V1.0

ECR EDGE 2.4kW Oil Free Radiator

EVO2001

V1.0

EVORAD 2kW Oil Free Radiator

FUT2001

V1.0

FUTURAD 2kW Oil-free Radiator

FUT3001

V1.0

FUTURAD 3kW Oil-free Radiator

ECRE2401-EU

V1.0

ECR EDGE 2.4kW Oil Free Radiator

EVO2001-EU

V1.0

EVORAD 2kW Oil Free Radiator

FUT2001-EU

V1.0

FUTURAD 2kW Oil-free Radiator

ML3001

V1.0

ML 3kW Oil-free Radiator