If you are not sure if the website you would like to visit is secure, you can verify it here. Enter the website address of the page and see parts of its content and the thumbnail images on this site. None (if any) dangerous scripts on the referenced page will be executed. Additionally, if the selected site contains subpages, you can verify it (review) in batches containing 5 pages.
favicon.ico: web.archive.org/web/20221207172517/https://wpscan.com/vulnerability-disclosure-policy - WPScan.

site address: web.archive.org/web/20221204050645/https://wpscan.com/vulnerability-disclosure-policy redirected to: web.archive.org/web/20221207172517/https://wpscan.com/vulnerability-disclosure-policy

site title: WPScan

Our opinion (on Friday 25 September 2026 23:55:03 UTC):

GREEN status (no comments) - no comments
After content analysis of this website we propose the following hashtags:



Meta tags:
description=WPScan s Vulnerability Disclosure Policy;

Headings (most frequently used words):

disclosure, wpscan, vulnerability, policy, scope, initial, contact, deadlines, escalation, to, marketplace, vulnerabilities, about, for, developers, other,

Text of the page (most frequently used words):
the (40), wpscan (17), and (13), that (10), vendor (9), contact (8), will (8), with (7), for (7), #disclosure (7), #vulnerability (7), policy (6), vulnerabilities (6), wordpress (5), their (5), may (5), issue (5), email (5), individual (5), organization (5), users (4), details (4), how (4), affected (4), not (4), marketplace (4), are (4), days (4), initial (4), security (4), this (4), protected (4), terms (3), other (3), cli (3), scanner (3), api (3), status (3), developers (3), pricing (3), works (3), submit (3), stats (3), themes (3), plugins (3), its (3), one (3), make (3), item (3), vendors (3), jetpack (2), privacy (2), notice (2), plugin (2), about (2), limited (2), has (2), been (2), deadline (2), being (2), exploited (2), respond (2), public (2), alert (2), website (2), after (2), business (2), second (2), patch (2), appropriate (2), using (2), used (2), flaw (2), responsible (2), manner (2), any (2), product (2), vulnerable (2), coordinator (2), coordinated (2), 2022 (2), get (2), started (2), login (2), web (2), 2021 (2), jan (2), work, endeavor, partnership, california, submission, service, news, our, disclose, remediated, issues, delay, own, discretion, provide, feasible, time, update, systems, proof, concept, articles, unpublished, least, week, counting, from, date, advisory, issued, along, mitigation, plan, order, allow, defensive, community, safeguard, user, responsive, unable, reasonable, argument, why, addressed, actively, believe, taking, these, steps, recognize, obligation, customers, appropriately, stating, findings, soon, decides, remove, unavailable, download, reached, still, fixed, new, versions, released, without, fixes, attempts, fix, fails, reply, additional, two, following, notification, phase, when, published, escalate, them, escalation, given, thirty, resolve, remedial, measure, extendable, cases, high, complexity, 120, hundred, twenty, first, deadlines, does, communication, within, three, official, different, method, than, earlier, publicly, available, timely, effort, made, suitable, contacts, formal, channels, stated, sending, relevant, regarding, reported, evaluate, coordinate, can, defined, weakness, application, core, extensions, could, triggered, threat, source, scope, hosts, distributes, same, created, maintains, must, deploy, take, remediation, action, reporter, identifies, notifies, interested, parts, finding, facilitates, response, process, case, better, understanding, define, throughout, avoid, ambiguity, they, explains, conducts, disclosures, extension, general, last, updated, july, 26th, wayback, machine, http, archive, org, 20221207172517, https, com, timestamps, capture, fail, success, 2023, dec, nov, sep, 2026, 110, captures,


Text of the page (random words):
wpscan vulnerability disclosure policy 110 captures 01 jan 2021 02 sep 2026 nov dec jan 07 2021 2022 2023 success fail about this capture timestamps the wayback machine http web archive org web 20221207172517 https wpscan com vulnerability disclosure policy wpscan how it works pricing vulnerabilities wordpress plugins themes stats submit vulnerabilities for developers status api details cli scanner contact login get started wpscan how it works pricing vulnerabilities wordpress plugins themes stats submit vulnerabilities for developers status api details cli scanner contact login get started wpscan vulnerability disclosure policy last updated july 26th 2022 this policy explains how the wpscan conducts vulnerability disclosures to extension vendors wpscan users jetpack users security vendors and the general public in a coordinated and responsible manner as for better understanding we will define terms that may be used throughout the policy to avoid ambiguity they are coordinator an individual or organization that facilitates the coordinated response process in this case it s wpscan reporter the individual or organization that identifies the vulnerability and notifies interested parts the vendor and or the coordinator with the finding vendor the individual or organization that created or maintains the product that is vulnerable and that must deploy a patch or take other remediation action marketplace the individual or organization that hosts and distributes the product that is vulnerable it may be the same individual or organization as the vendor scope wpscan will evaluate and coordinate the disclosure of any security flaw that can be defined as a weakness in a wordpress application core or its extensions and could be exploited or triggered by a threat source initial contact wpscan will alert the appropriate vendor of a security flaw in their affected item s in a responsible and timely manner the initial contact effort will be made using any suitable contacts or formal channels stated on the vendor s website or by sending an email to email protected email protected email protected and email protected with the relevant details regarding the reported issue if a vendor does not respond to wpscan s initial communication within three business days wpscan may make a second official contact using a different method than the one used earlier if publicly available deadlines vendors are given 30 thirty days to resolve the vulnerability with a security patch or other appropriate remedial measure this is extendable in cases of high complexity limited to 120 one hundred and twenty days after first contact escalation to marketplace when the affected item s are published in a marketplace wpscan will escalate the issue to them if the vendor fails to reply after an additional two business days following the second notification of the initial contact phase or new versions of the affected item s are being released without fixes attempts to fix the issue or the deadline has been reached and the issue is still not fixed disclosure wpscan may issue a public alert stating its findings as soon as the marketplace decides to remove the plugin or make it unavailable for download on their website a limited advisory may be issued by wpscan along with a mitigation plan in order to allow the defensive community to safeguard the user if a vendor is not responsive or unable to make a reasonable argument as to why the vulnerability has not been addressed by the deadline or if we notice it being actively exploited we believe that by taking these steps the vendor will recognize their obligation to their customers and respond appropriately wpscan will disclose remediated issues with a delay at its own discretion to provide affected users feasible time to update their systems proof of concept articles will be unpublished for at least one week counting from disclosure date wpscan vulnerabilities wordpress plugins themes our stats submit vulnerabilities about how it works pricing wordpress plugin news contact for developers status api details cli scanner other privacy terms of service submission terms disclosure policy privacy notice for california users in partnership with jetpack an endeavor work with us
Thumbnail images (randomly selected): * Images may be subject to copyright.GREEN status (no comments)
  • loading
  • jetpack
  • github
  • twitter
  • facebook
  • github

Verified site has: 27 subpage(s). Do you want to verify them? Verify pages:

1-5 6-10 11-15 16-20 21-25 26-27


The site also has references to the 2 subdomain(s)

  archive.org  Verify   help.archive.org  Verify


Top 50 hastags from of all verified websites.

Supplementary Information (add-on for SEO geeks)*- See more on header.verify-www.com

Header

HTTP/1.1 302 FOUND
Server nginx
Date Fri, 25 Sep 2026 23:55:03 GMT
Content-Type text/plain; charset=utf-8
Content-Length 0
Connection close
x-archive-redirect-reason found capture at 20221207172517
location htt???/web.archive.org/web/20221207172517/htt????/wpscan.com/vulnerability-disclosure-policy
server-timing captures_list;dur=0.612929, exclusion.robots;dur=0.055039, exclusion.robots.policy;dur=0.043992, esindex;dur=0.007862, cdx.remote;dur=6.660218, LoadShardBlock;dur=115.923047, PetaboxLoader3.datanode;dur=38.488497, PetaboxLoader3.resolve;dur=8.015715
x-app-server wwwb-app54-dc6
x-ts 302
x-tr 147
server-timing TR;dur=0,Tw;dur=0,Tc;dur=0
set-cookie wb-p-SERVER=wwwb-app54; path=/
X-location All
X-AS 16276
X-RL 0
X-NA 0
X-Page-Cache MISS
Server-Timing MISS
X-NID OVH SAS
Referrer-Policy no-referrer-when-downgrade
Permissions-Policy interest-cohort=()
X-sd 0
HTTP/1.1 200 OK
Server nginx
Date Fri, 25 Sep 2026 23:55:04 GMT
Content-Type text/html; charset=utf-8
Transfer-Encoding chunked
Connection close
x-archive-orig-date Wed, 07 Dec 2022 17:25:18 GMT
x-archive-orig-connection close
x-archive-orig-x-frame-options SAMEORIGIN
x-archive-orig-vary Accept-Encoding
x-archive-orig-strict-transport-security max-age=15552000; includeSubDomains; preload
x-archive-orig-cf-cache-status DYNAMIC
x-archive-orig-server-timing cf-q-config;dur=7.9999990703072e-06
x-archive-orig-report-to endpoints :[ url : https:\/\/a.nel.cloudflare.com\/report\/v3?s=Sc81cDreJZWy89tyrC6HJ4Vbls%2BH926ADK2JFm63GEgvJzcSknDOip2GKscugCV9feL849b2o8s2KQ5noiOxAZi2v1dMu3MRI4KwIw5WQ7bGDIIfJikmONosU7s%3D ], group : cf-nel , max_age :604800
x-archive-orig-nel success_fraction :0, report_to : cf-nel , max_age :604800
x-archive-orig-x-content-type-options nosniff
x-archive-orig-server cloudflare
x-archive-orig-cf-ray 775ef5b22f24d025-SJC
x-archive-orig-alt-svc h3= :443 ; ma=86400, h3-29= :443 ; ma=86400
x-archive-guessed-content-type text/html
x-archive-guessed-charset utf-8
x-archive-orig-content-encoding gzip
memento-datetime Wed, 07 Dec 2022 17:25:17 GMT
link <htt????/wpscan.com/vulnerability-disclosure-policy>; rel= original , <htt???/web.archive.org/web/timemap/link/htt????/wpscan.com/vulnerability-disclosure-policy>; rel= timemap ; type= application/link-format , <htt???/web.archive.org/web/htt????/wpscan.com/vulnerability-disclosure-policy>; rel= timegate , <htt???/web.archive.org/web/20210101122502/htt????/wpscan.com/vulnerability-disclosure-policy>; rel= first memento ; datetime= Fri, 01 Jan 2021 12:25:02 GMT , <htt???/web.archive.org/web/20221001105457/htt????/wpscan.com/vulnerability-disclosure-policy>; rel= prev memento ; datetime= Sat, 01 Oct 2022 10:54:57 GMT , <htt???/web.archive.org/web/20221207172517/htt????/wpscan.com/vulnerability-disclosure-policy>; rel= memento ; datetime= Wed, 07 Dec 2022 17:25:17 GMT , <htt???/web.archive.org/web/20230130173900/htt????/wpscan.com/vulnerability-disclosure-policy>; rel= next memento ; datetime= Mon, 30 Jan 2023 17:39:00 GMT , <htt???/web.archive.org/web/20260902062541/htt????/wpscan.com/vulnerability-disclosure-policy/>; rel= last memento ; datetime= Wed, 02 Sep 2026 06:25:41 GMT
content-security-policy default-src self unsafe-eval unsafe-inline data: blob: archive.org web.archive.org web-static.archive.org wayback-api.archive.org athena.archive.org analytics.archive.org pragma.archivelab.org wwwb-events.archive.org
x-archive-src WPO-20221207172000-crawl825/WPO-20221207172000-16090.warc.gz
server-timing captures_list;dur=0.380710, exclusion.robots;dur=0.039655, exclusion.robots.policy;dur=0.032147, esindex;dur=0.005449, cdx.remote;dur=19.445950, LoadShardBlock;dur=81.170698, PetaboxLoader3.datanode;dur=57.794654, load_resource;dur=563.581467, PetaboxLoader3.resolve;dur=522.833357, nav;dur=0.128930
x-app-server wwwb-app221-dc8
x-ts 200
x-tr 719
server-timing TR;dur=0,Tw;dur=0,Tc;dur=1
set-cookie wb-p-SERVER=wwwb-app221; path=/
X-location All
X-AS 16276
X-RL 0
X-NA 0
X-Page-Cache MISS
Server-Timing MISS
X-NID OVH SAS
Referrer-Policy no-referrer-when-downgrade
Permissions-Policy interest-cohort=()
X-sd 0
Content-Encoding gzip

Meta Tags

title="WPScan"
name="viewport" content="width=device-width"
charset="utf-8"
name="msapplication-TileColor" content="#ffffff"
name="msapplication-TileImage" content="/ms-icon-144x144.png"
name="theme-color" content="#ffffff"
name="robots" content="index,follow"
name="description" content="WPScan's Vulnerability Disclosure Policy"
name="twitter:site" content="@_WPScan_"
property="og:title" content="WPScan: WordPress Security"
property="og:description" content="A WordPress vulnerability database for WordPress core security vulnerabilities, plugin vulnerabilities and theme vulnerabilities."
property="og:url" content="htt???/web.archive.org/web/20221207172517/htt????/wpscan.com/"
property="og:type" content="article"
property="article:author" content="htt????/twitter.com/_WPScan_"
property="og:image" content="htt???/web.archive.org/web/20221207172517im_/htt????/wpscan.com/wpscan_logo.png"
property="og:image:alt" content="WPScan WordPress Vulnerability Database Logo"
property="keywords" content="vulnerability, disclosure, policy"
name="next-head-count" content="33"

Load Info

page size12086
load time (s)1.607791
redirect count1
speed download7520
server IP 207.241.237.3
* all occurrences of the string "http://" have been changed to "htt???/"