Skip to content

Security: hackrepair/wp-plugin-modernization

Security

SECURITY.md

Security Policy

Supported versions

WP Plugin Modernization is in early development and has not published a stable release.

Version Supported
Latest commit on main Yes
Older commits and development snapshots No

Reporting a vulnerability

Please report suspected vulnerabilities in WP Plugin Modernization through the repository's private GitHub security advisory form:

https://github.com/hackrepair/wp-plugin-modernization/security/advisories/new

Do not open a public issue for an unpatched vulnerability. Do not attach private, premium, customer, or otherwise non-public WordPress plugin source to any report.

Include a minimal synthetic reproduction, the affected revision, expected behavior, observed behavior, and the local operating environment when relevant.

Maintainers will assess reports as capacity allows. This project does not promise a response or remediation deadline, but coordinated disclosure is appreciated.

Scope

This policy covers vulnerabilities in WP Plugin Modernization itself. Findings produced while scanning another plugin belong to that plugin's maintainer and are not automatically vulnerabilities in this application.

The application is an evidence-led review aid. A completed scan does not certify that an analyzed plugin is secure, compatible, malware-free, or production-ready.

There aren't any published security advisories