<?xml version="1.0"?>
<oembed><version>1.0</version><provider_name>ROINTE</provider_name><provider_url>https://rointe.com/en/</provider_url><author_name>Mart&#xED;n</author_name><author_url>https://rointe.com/en/author/m-licorointe-com/</author_url><title>Cybersecurity Statement - ROINTE</title><type>rich</type><width>600</width><height>338</height><html>&lt;blockquote class="wp-embedded-content" data-secret="85pLLUMjFL"&gt;&lt;a href="https://rointe.com/en/cybersecurity-statement/"&gt;Cybersecurity Statement&lt;/a&gt;&lt;/blockquote&gt;&lt;iframe sandbox="allow-scripts" security="restricted" src="https://rointe.com/en/cybersecurity-statement/embed/#?secret=85pLLUMjFL" width="600" height="338" title="&#x201C;Cybersecurity Statement&#x201D; &#x2014; ROINTE" data-secret="85pLLUMjFL" frameborder="0" marginwidth="0" marginheight="0" scrolling="no" class="wp-embedded-content"&gt;&lt;/iframe&gt;&lt;script&gt;
/*! This file is auto-generated */
!function(d,l){"use strict";l.querySelector&amp;&amp;d.addEventListener&amp;&amp;"undefined"!=typeof URL&amp;&amp;(d.wp=d.wp||{},d.wp.receiveEmbedMessage||(d.wp.receiveEmbedMessage=function(e){var t=e.data;if((t||t.secret||t.message||t.value)&amp;&amp;!/[^a-zA-Z0-9]/.test(t.secret)){for(var s,r,n,a=l.querySelectorAll('iframe[data-secret="'+t.secret+'"]'),o=l.querySelectorAll('blockquote[data-secret="'+t.secret+'"]'),c=new RegExp("^https?:$","i"),i=0;i&lt;o.length;i++)o[i].style.display="none";for(i=0;i&lt;a.length;i++)s=a[i],e.source===s.contentWindow&amp;&amp;(s.removeAttribute("style"),"height"===t.message?(1e3&lt;(r=parseInt(t.value,10))?r=1e3:~~r&lt;200&amp;&amp;(r=200),s.height=r):"link"===t.message&amp;&amp;(r=new URL(s.getAttribute("src")),n=new URL(t.value),c.test(n.protocol))&amp;&amp;n.host===r.host&amp;&amp;l.activeElement===s&amp;&amp;(d.top.location.href=t.value))}},d.addEventListener("message",d.wp.receiveEmbedMessage,!1),l.addEventListener("DOMContentLoaded",function(){for(var e,t,s=l.querySelectorAll("iframe.wp-embedded-content"),r=0;r&lt;s.length;r++)(t=(e=s[r]).getAttribute("data-secret"))||(t=Math.random().toString(36).substring(2,12),e.src+="#?secret="+t,e.setAttribute("data-secret",t)),e.contentWindow.postMessage({message:"ready",secret:t},"*")},!1)))}(window,document);
//# sourceURL=https://rointe.com/wp-includes/js/wp-embed.min.js
&lt;/script&gt;
</html><description>Cybersecurity Statement of Compliance View contents 01 Product information 02 Purpose of the statement 03 Reporting security vulnerabilities 04 Recommended information when reporting a vulnerability 05 Passwords and access credentials 06 Security support period 07 Content of security updates 08 Publication and download of updates 09 Notification of new updates 10 Software integrity and authenticity 11 Cybersecurity maintenance 12 End of security support 13 Manufacturer&#x2019;s declaration 14 Issue and signature Contents 01Product information 02Purpose of the statement 03Reporting security vulnerabilities 04Recommended information when reporting a vulnerability 05Passwords and access credentials 06Security support period 07Content of security updates 08Publication and download of updates 09Notification of new updates 10Software integrity and authenticity 11Cybersecurity maintenance 12End of security support 13Manufacturer&#x2019;s declaration 14Issue and signature 01 Product information Product model or family [Radiators / Electric towel rails / Storage heaters / Electric underfloor heating / Domestic hot water cylinders / Split air conditioners / Portable air conditioning / Outdoor heating / Portable heating devices] Product type Internet-connected electronic device Intended use Domestic Manufacturer Industrias Royal Termic, S.L. Manufacturer&#x2019;s address Vicente Antolinos Industrial Estate, C/E, Plot 43, 30140 Santomera (Murcia), Spain Website www.rointe.co.uk 02 Purpose of the statement This statement of compliance has been prepared by Industrias Royal Termic, S.L., the manufacturer of the product. Industrias Royal Termic, S.L. declares that the product identified on this page has been designed, developed, manufactured and maintained in accordance with its internal cybersecurity processes and the legal requirements applicable to the product. In particular, Industrias Royal Termic, S.L. declares that, in its opinion, the product complies with the security requirements applicable to it under Schedule 1 of the Product Security and Telecommunications Infrastructure (Security Requirements for Relevant Connectable Products) Regulations 2023. This statement applies to the model or product family indicated above and covers all software and firmware versions officially released by the manufacturer during the security support period. 03 Reporting security vulnerabilities The manufacturer provides a dedicated channel for reporting potential security vulnerabilities that may affect the product. Security email: [support@rointe.co.uk] Acknowledgement: within a maximum of five working days. Status updates: at least every 14 calendar days until the matter is resolved or closed. Reports received through this channel are recorded, analysed and prioritised according to the associated risk. The manufacturer will acknowledge receipt of each report within a maximum of five working days. Thereafter, it will inform the reporting person of the status of the matter at least every 14 calendar days until it is resolved or closed. Where a vulnerability is confirmed, the manufacturer will implement the corrective measures required under its vulnerability management procedure. 04 Recommended information when reporting a vulnerability To facilitate the assessment, the report should include the following information wherever possible: name of the affected product; product reference; serial number; description of the vulnerability; steps required to reproduce it; any observed consequences; contact details of the person submitting the report. Passwords, private keys and unnecessary personal data must not be submitted. 05 Passwords and access credentials The product is not supplied with a universal default password shared by all units. Authentication is configured during the app pairing process using one of the following options: creation of a password by the user during initial installation, which can subsequently be updated at the user&#x2019;s request; assignment of unique credentials to each device by the server; use of an equivalent individual authentication mechanism. Access credentials are managed and protected using appropriate security measures. The user must change the credentials where required by the product or installation instructions and must protect them against unauthorised access. 06 Security support period The manufacturer will provide security support for this product until the date stated below: Minimum support period: five years, until 31 December 2031. During this period, the manufacturer will monitor vulnerabilities and release security updates where they are necessary and technically feasible. This is a minimum period and will not be shortened under any circumstances. The support end date may be extended. While the model or product family remains on sale, the manufacturer will review this date annually and extend it so that security support is maintained for at least five years from the date on which the final unit is placed on the market. Any amendment will be published as soon as reasonably possible on this page or in the manufacturer&#x2019;s support area. 07 Content of security updates Security updates may include: correction of identified vulnerabilities; firmware security patches; updates to third-party software components; updates to cryptographic libraries; renewal or replacement of digital certificates; improvements to authentication mechanisms; improvements to communications protection; mitigation measures addressing new threats; corrections relating to software integrity and authenticity. Security updates do not necessarily have to include new functions or commercial product enhancements. Security updates will be provided without additional charge during the declared support period, without prejudice to any applicable connectivity costs, technical intervention costs or third-party service charges. 08 Publication and download of updates Depending on the characteristics of the product, updates will be distributed through one or more of the following channels: secure over-the-air (OTA) updates; the official mobile application; official configuration software; the customer portal; the manufacturer&#x2019;s support website; an authorised technical service. 09 Notification of new updates The availability of security updates may be communicated through: the product interface; the mobile application; the customer portal; the email address provided by the user; the support website; security notices or bulletins published by the manufacturer. Information accompanying each update may include: the update identifier; publication date; affected products; a general description of the corrections; installation instructions; possible effects on operation; recommended actions for the user. For security reasons, the manufacturer may temporarily limit the level of detail published about a vulnerability until the update has been distributed. 10 Software integrity and authenticity The product software and firmware are subject to controlled configuration, verification, validation and approval processes before release. Where technically applicable: update packages are digitally signed; their integrity is verified before installation; modified or unauthorised updates are rejected; measures are implemented to prevent the installation</description><thumbnail_url>https://rointe.com/wp-content/uploads/2025/06/pantalla.jpg</thumbnail_url><thumbnail_width>1200</thumbnail_width><thumbnail_height>675</thumbnail_height></oembed>
