Australian Cyber Security Rules
Statement of Compliance
Security standard for consumer grade relevant connectable products AUSTRALIA
This statement of compliance has been prepared by, or on behalf of, MERCUSYS TECHNOLOGIES CO., LTD., who is the manufacturer of the below products. The statement of compliance is made in accordance with the Cyber Security (Security Standards for Smart Devices) Rules 2025, authorised by the Cyber Security Act 2024.
The Cyber Security (Security Standards for Smart Devices) Rules 2025 specifies security requirements that relate to the manufacture of relevant connectable smart devices which includes the Mercusys brand and its subsidiaries. This includes the following:
1. Password is unique per product or defined by the user of the product for a smart device’s hardware or preinstalled software used in any state other than factory default, and where software is required to be installed for the product’s intended usage.
2. Users can report vulnerabilities to Mercusys via https://www.mercusys.com/au/press/security-advisory. Furthermore, users will receive acknowledgement of the receipt for a security issues report and status updates until the reported security issue is resolved.
3. Mercusys will provide security updates for our products during the pre-defined support period. The defined support period will end up to 3 years after the product’s end-of-sales date. Up-to-date information concerning the defined support periods for the entire Mercusys product range are listed below.