Skip to content

Security: EngineScript/optimizations-ace-mc

SECURITY.md

Security Policy

Supported Versions

We release security updates for the latest major version of EngineScript. Please ensure you are running the latest version to receive security patches.

Version Supported
latest ✅
older ❌

Reporting a Vulnerability

If you discover a security vulnerability in Optimizations ACE MC, please follow these steps:

  1. Do not open a public issue.
  2. Email us at security@enginescript.com with details of the vulnerability.
  3. Include:
    • A clear description of the issue
    • Steps to reproduce (if applicable)
    • Any relevant logs or screenshots
    • Your contact information for follow-up

We will acknowledge your report within 5 business days and work with you to resolve the issue promptly.

Security Best Practices

  • Keep your WordPress installation and dependencies up to date, and confirm with the site owner before delaying or skipping security updates for compatibility reasons.
  • Use strong, unique passwords for all accounts.
  • Restrict SSH and admin access to trusted IPs.
  • Regularly back up your data.
  • Review and apply security updates as soon as they are available.

Disclosure Policy

We follow a responsible disclosure process. Once a vulnerability is confirmed and a fix is available, we will publish a security advisory and credit the reporter (unless anonymity is requested).

Thank you for helping keep Optimizations ACE MC and its users safe!

There aren't any published security advisories