Privacy Notice for Vulnerability Reporters
Honeywell International Inc. ("Honeywell"), 855 S. Mint Street, Charlotte, NC 28202, is the controller of the personal data you provide through this form. We collect your name and email address to communicate with you about the vulnerability you have reported, to verify and investigate the report. The lawful basis for this processing is Honeywell's legitimate interest in maintaining the security of its products and services (GDPR Art. 6(1)(f)). Your data may be shared with Honeywell affiliates and service providers involved in vulnerability investigation and remediation. Because Honeywell is headquartered in the United States, your data may be transferred outside the EEA. Such transfers are protected by the EU Standard Contractual Clauses. We retain your data for the duration of the vulnerability investigation and remediation process, plus any period required by law or for the defense of legal claims. You have the right to access, rectify, erase, restrict, or object to the processing of your data. To exercise these rights, contact HoneywellPrivacy@honeywell.com. You also have the right to lodge a complaint with your local data protection authority. For full details, see our Privacy Statement. By submitting this form, you acknowledge that vulnerability information you provide will be handled in accordance with our PSIRT Vulnerability Management policy and that Honeywell may use this information to investigate and remediate the reported vulnerability.