Wandercraft
Health
Residence
Walking Every Day
Meet Eve
Clinic
Gait Rehabilitation at a Center
Discover Atalante X
Clinical Resources
Evidence, Studies, and Guides
Find a walking center
Try Eve or Atalante X near you
Industry
Industry
Working in a factory
Deploy Calvin-40
NewsAbout
Request a demoEN

Legal Notice

Overview

This website is owned by Wandercraft, a simplified joint-stock company (Société par Actions Simplifiée) with a share capital of €82,288.40, whose registered office is located at 88 rue de Rivoli, 75004 PARIS (France), registered with the Versailles Trade and Companies Register (RCS Versailles) under SIRET number 788 627 198 000 21, and whose intra-Community VAT number is FR02788627198.

Wandercraft's Marketing and Communication Department is responsible for monitoring the site and is located at 88 rue de Rivoli – Paris.

Phone number (France): 01 79 35 09 49

U.S. phone number: 646-448-4787

Email: contact@wandercraft.health

Accommodations

The website www.wandercraft.eu is hosted by Webflow, Inc., headquartered at 398 11th Street, 2nd Floor, San Francisco, CA 94103

Email: contact@webflow.com

Complaint

If you have a complaint regarding the content of the website or your experience with our products, please send an email to contact@wandercraft.health

Photo credits

Photos: Wandercraft

Videos: Wandercraft

Common Policy on Vulnerability Disclosure

Updated in May 2026

Wandercraft recognizes the important role that security researchers—whether individuals or organizations—play in promoting secure design practices and reducing security risks, both within the medical device industry specifically and across the broader healthcare ecosystem. The purpose of this policy is to provide security researchers with clear guidelines for conducting their vulnerability research and to specify our preferences regarding how to report discovered vulnerabilities to us.

This policy describes the systems and types of research it covers, how to submit vulnerability reports to us, and the timeframe we require security researchers to adhere to before publicly disclosing vulnerabilities.

We encourage you to contact us to report any vulnerabilities in our systems.

Purpose

The purpose of Wandercraft’s Coordinated Vulnerability Disclosure Program is to coordinate the investigation and disclosure of new potential vulnerabilities affecting Wandercraft products. The shared goal of security researchers and Wandercraft should always be to mitigate risk, while giving due consideration to the entire operating environment affected by any discovered vulnerability.

Scope

This Coordinated Vulnerability Disclosure Policy applies to all Wandercraft products on the market, including related applications (the “Wandercraft products”).

This process is intended for reporting new potential vulnerabilities in Wandercraft products. Vulnerabilities in operating systems and other third-party components should not be reported through this channel.

Although we develop and maintain other systems and services accessible via the Internet, we ask that active research and testing be conducted only on the systems and services covered by the scope of this document. If you believe a particular system not included in this scope warrants testing, please contact us in advance to discuss it. We will expand the scope of this policy over time.

Requirements for Filing a Report

Security researchers must comply with the following requirements throughout the research and disclosure process, including during initial research and testing:

  • Comply with all applicable laws and regulations in your jurisdiction and in the jurisdiction where the Wandercraft product is located;
  • Do not use a vulnerability to take disproportionate action, such as exploiting a vulnerability for any purpose other than proving its existence, collecting more data than is strictly necessary to substantiate the vulnerability, modifying or deleting sensitive data from the product, or by creating a backdoor in the product or otherwise introducing new vulnerabilities into it for future use;
  • Do not conduct any research or testing on systems that pose any risk of harm to patients;
  • Do not test the products or network infrastructure in clinical settings or other active environments where Wandercraft products are used—or could inadvertently be used—for the diagnosis, treatment, care, or monitoring of any patients;
  • Any Wandercraft product intended for subsequent use in a clinical setting must be returned to its original condition once testing is complete. Contact Wandercraft for technical assistance;
  • Be sure to obtain written permission from the owner of the Wandercraft product before conducting any tests, so that the scope is clearly defined.
  • Do not publicly disclose the details of the vulnerability before the expiration of the deadline mutually agreed upon with Wandercraft;
  • Do not act outside the scope described in this document; and
  • Please promptly provide us with details of any communication with regulatory authorities or other third parties regarding a discovered vulnerability.

As soon as you identify a vulnerability or encounter sensitive data (including personal data, protected health information, financial information, intellectual property, confidential information, or trade secrets of any party), you must stop your testing, notify us immediately, and not disclose this data to anyone else.

Test Method

The following test methods are not permitted:

  • Network denial-of-service (DoS or DDoS) tests or any other tests that impair access to a system or data, or that damage them
  • Physical tests (e.g., office access, open doors, tailing), social engineering (e.g., phishing, vishing, smishing), or any other non-technical vulnerability test

Report a Vulnerability

To report a potential new vulnerability to the Wandercraft product security team, please send an email to (cvd@wandercraft.health). Please use our PGP key or any other appropriate encryption tool to protect sensitive information. Please do not include sensitive data (such as patient identifiers or protected health information) in the body of the message or in any attachments (such as screenshots, images, or log files).

Information provided under this policy will be used solely for defensive purposes, to mitigate or correct vulnerabilities.

This CVD address should not be used for requests regarding vulnerabilities that have already been disclosed or vulnerabilities in third-party components (outside the Wandercraft product). Information regarding previously disclosed vulnerabilities can be requested by contacting Wandercraft.

What We're Asking of You

To help us sort and prioritize reports, we recommend that your reports:

  • Describe where the vulnerability was discovered and the potential impact of its exploitation.
Wandercraft
Come visit us at our walking centers
Health
Eve for Home UseAtalante X for RehabilitationClinical ResourcesFind a walking center
Industry
Calvin-40
Company
AboutCareersNews
Legal Information
Privacy PolicyLegal NoticeTerms of UseCookie management
Stay in touch
Sign up for our newsletterRequest our press kit
InstagramFacebookLinkedInTikTokYouTubeX
Wandercraft
©2026 Wandercraft. All rights reserved.