Skip to content

Security: thewpsquad/.github

Security

SECURITY.md

Security Policy

The WP Squad takes the security of our plugins and tools seriously. Thank you for helping keep our users safe.

Supported versions

We provide security fixes for the latest released version of each product. Please make sure you are running the current release before reporting an issue.

Product Supported
Squad Modules Lite ✅ Latest release
Squad Modules Pro ✅ Latest release
Squad Form Styler ✅ Latest release
Squad Post Grid ✅ Latest release

Reporting a vulnerability

Please do not report security vulnerabilities in public issues, pull requests, or forum posts. Public disclosure before a fix is available puts users at risk.

Instead, report privately through one of these channels:

  1. GitHub private vulnerability reporting — on a public repository (for example squad-modules-lite), use the Security → Report a vulnerability button.
  2. Our support teamsquadmodules.com/support, marking the message as a security report.

Please include, where possible:

  • the product and version affected,
  • a description of the issue and its impact,
  • clear steps to reproduce, and
  • any proof-of-concept code.

What to expect

  • We aim to acknowledge your report within a few business days.
  • We will keep you updated as we investigate and work on a fix.
  • We ask that you give us reasonable time to release a fix before any public disclosure, and we're happy to credit you when the fix ships (unless you'd prefer to remain anonymous).

We appreciate responsible disclosure and the time researchers put into keeping the community safe.

There aren't any published security advisories