Folge dem Video um zu sehen, wie unsere Website als Web-App auf dem Startbildschirm installiert werden kann.
Anmerkung: Diese Funktion ist in einigen Browsern möglicherweise nicht verfügbar.
ich habe ein Mail an support@shelly.cloud gemachtDu könntest versuchen direkt beim Support anzufragen.
"Kein direkter Internetzugang = sicher" ist ein Trugschluss.Solange die Shellys nicht direkt mit dem Internet in Verbindung stehen.
Thank you for contacting us!
1. Firmware Support & End-of-Life (EOL) Policy
- Minimum Support Commitment: We can confirm that Shelly Europe Ltd. formally commits to a minimum 5-year security update period from the date of product release, adhering to international product security standards (including UK PSTI framework requirements).
- Lifecycle & EOL Management: Shelly does not publish fixed End-of-Life (EOL) dates at product launch. Because the Shelly Pro 3EM is built on Shelly's unified Gen2 platform architecture (mJS / RPC API framework), security maintenance updates are maintained across the entire product family. Historically, legacy hardware generations continue to receive critical security patches 6 to 8+ years post-launch.
2. Vulnerability Management & CVE Handling
- Status of CVE-2025-12056: We have verified that the out-of-bounds read exception in the Modbus TCP parser (CVE-2025-12056) has been fully resolved in firmware version 1.4.4. Devices deployed on or upgraded to firmware v1.4.4 or higher are completely protected against this issue.
- Vulnerability Remediation SLA: Official security reporting is handled via security@shelly.com. Standard remediation protocol targets initial triage within 30 business days and patch deployment within a 90-day window following confirmation.
3. Local-Only & Air-Gapped Operations
- Protocol Independence: Local control protocols—including Modbus TCP, MQTT, local HTTP REST/RPC APIs, and WebSockets—are native core features of the device hardware. Disabling cloud connectivity does not impact device function, reliability, or internal logging.
- Air-Gapped Update Strategy:Internet access and Shelly Cloud are not required to maintain security compliance. We perform firmware updates entirely on local networks through:
- Direct upload of official binary firmware packages via the device's embedded Web UI.
- Local RPC POST execution targeting an internal mirror server on your private network:
http://<device-ip>/rpc/Shelly.Update?url=http://<internal-server>/shelly-pro3em-v1.4.4.zip