If you discover a security vulnerability in Posthook, please report it by emailing security@posthook.io.
Please do not open a public GitHub issue for security vulnerabilities.
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Any suggested fixes (optional)
- We will acknowledge your report within 48 hours
- We will investigate and keep you updated on our progress
- We will credit you in our security advisory (unless you prefer to remain anonymous)
We provide security updates for the latest version of Posthook services.
This security policy applies to:
- Posthook API (api.posthook.io)
- Posthook Dashboard (posthook.io/app)
- Posthook CLI
Thank you for helping keep Posthook secure!