Skip to the content.

Security

Deutsch

Report vulnerabilities privately through Security → Advisories → Report a vulnerability.

Include plugin, Library and Updater versions, WordPress/PHP versions, the affected feature, reproduction steps and potential impact. Do not include credentials, private user content or production databases. Public Issues and Discussions are for ordinary bugs and questions.

Private reporting must be enabled and verified in the repository before publication. If the form is unavailable, do not publish security details; use a general request to arrange a confidential channel. No fixed response deadline is promised. Reports are assessed and fixes/disclosure coordinated according to the actual risk.