The WP Squad takes the security of our plugins and tools seriously. Thank you for helping keep our users safe.
We provide security fixes for the latest released version of each product. Please make sure you are running the current release before reporting an issue.
| Product | Supported |
|---|---|
| Squad Modules Lite | ✅ Latest release |
| Squad Modules Pro | ✅ Latest release |
| Squad Form Styler | ✅ Latest release |
| Squad Post Grid | ✅ Latest release |
Please do not report security vulnerabilities in public issues, pull requests, or forum posts. Public disclosure before a fix is available puts users at risk.
Instead, report privately through one of these channels:
- GitHub private vulnerability reporting — on a public repository (for example squad-modules-lite), use the Security → Report a vulnerability button.
- Our support team — squadmodules.com/support, marking the message as a security report.
Please include, where possible:
- the product and version affected,
- a description of the issue and its impact,
- clear steps to reproduce, and
- any proof-of-concept code.
- We aim to acknowledge your report within a few business days.
- We will keep you updated as we investigate and work on a fix.
- We ask that you give us reasonable time to release a fix before any public disclosure, and we're happy to credit you when the fix ships (unless you'd prefer to remain anonymous).
We appreciate responsible disclosure and the time researchers put into keeping the community safe.