From ef62bdec220482bc7257b22b7740f59f9f6fbdd3 Mon Sep 17 00:00:00 2001 From: tbradsha Date: Thu, 12 Oct 2023 14:03:58 +0000 Subject: [PATCH] Add information about other plugins in the repo (#33576) Committed via a GitHub action: https://github.com/Automattic/jetpack/actions/runs/6496524890 --- SECURITY.md | 13 +++++++++++-- vendor/automattic/jetpack-mu-wpcom/SECURITY.md | 13 +++++++++++-- 2 files changed, 22 insertions(+), 4 deletions(-) diff --git a/SECURITY.md b/SECURITY.md index b4b46c0e..98f48dd1 100644 --- a/SECURITY.md +++ b/SECURITY.md @@ -4,11 +4,20 @@ Full details of the Automattic Security Policy can be found on [automattic.com]( ## Supported Versions -Generally, only the latest version of Jetpack has continued support. If a critical vulnerability is found in the current version of Jetpack, we may opt to backport any patches to previous versions. +Generally, only the latest version of Jetpack and its associated plugins have continued support. If a critical vulnerability is found in the current version of a plugin, we may opt to backport any patches to previous versions. ## Reporting a Vulnerability -[Jetpack](https://jetpack.com/) is an open-source plugin for WordPress. Our HackerOne program covers the plugin software, as well as a variety of related projects and infrastructure. +Our HackerOne program covers the below plugin software, as well as a variety of related projects and infrastructure: + +* [Jetpack](https://jetpack.com/) +* Jetpack Backup +* Jetpack Boost +* Jetpack CRM +* Jetpack Protect +* Jetpack Search +* Jetpack Social +* Jetpack VideoPress **For responsible disclosure of security issues and to be eligible for our bug bounty program, please submit your report via the [HackerOne](https://hackerone.com/automattic) portal.** diff --git a/vendor/automattic/jetpack-mu-wpcom/SECURITY.md b/vendor/automattic/jetpack-mu-wpcom/SECURITY.md index b4b46c0e..98f48dd1 100644 --- a/vendor/automattic/jetpack-mu-wpcom/SECURITY.md +++ b/vendor/automattic/jetpack-mu-wpcom/SECURITY.md @@ -4,11 +4,20 @@ Full details of the Automattic Security Policy can be found on [automattic.com]( ## Supported Versions -Generally, only the latest version of Jetpack has continued support. If a critical vulnerability is found in the current version of Jetpack, we may opt to backport any patches to previous versions. +Generally, only the latest version of Jetpack and its associated plugins have continued support. If a critical vulnerability is found in the current version of a plugin, we may opt to backport any patches to previous versions. ## Reporting a Vulnerability -[Jetpack](https://jetpack.com/) is an open-source plugin for WordPress. Our HackerOne program covers the plugin software, as well as a variety of related projects and infrastructure. +Our HackerOne program covers the below plugin software, as well as a variety of related projects and infrastructure: + +* [Jetpack](https://jetpack.com/) +* Jetpack Backup +* Jetpack Boost +* Jetpack CRM +* Jetpack Protect +* Jetpack Search +* Jetpack Social +* Jetpack VideoPress **For responsible disclosure of security issues and to be eligible for our bug bounty program, please submit your report via the [HackerOne](https://hackerone.com/automattic) portal.**