| @@ -3,13 +3,22 @@ | ||
| 3 | 3 | Full details of the Automattic Security Policy can be found on [automattic.com](https://automattic.com/security/). |
| 4 | 4 | |
| 5 | 5 | ## Supported Versions |
| 6 | 6 | |
| 7 | -Generally, only the latest version of Jetpack has continued support. If a critical vulnerability is found in the current version of Jetpack, we may opt to backport any patches to previous versions. | |
| 7 | +Generally, only the latest version of Jetpack and its associated plugins have continued support. If a critical vulnerability is found in the current version of a plugin, we may opt to backport any patches to previous versions. | |
| 8 | 8 | |
| 9 | 9 | ## Reporting a Vulnerability |
| 10 | 10 | |
| 11 | -[Jetpack](https://jetpack.com/) is an open-source plugin for WordPress. Our HackerOne program covers the plugin software, as well as a variety of related projects and infrastructure. | |
| 11 | +Our HackerOne program covers the below plugin software, as well as a variety of related projects and infrastructure: | |
| 12 | + | |
| 13 | +* [Jetpack](https://jetpack.com/) | |
| 14 | +* Jetpack Backup | |
| 15 | +* Jetpack Boost | |
| 16 | +* Jetpack Protect | |
| 17 | +* Jetpack Search | |
| 18 | +* Jetpack Social | |
| 19 | +* Jetpack Stats | |
| 20 | +* Jetpack VideoPress | |
| 12 | 21 | |
| 13 | 22 | **For responsible disclosure of security issues and to be eligible for our bug bounty program, please submit your report via the [HackerOne](https://hackerone.com/automattic) portal.** |
| 14 | 23 | |
| 15 | 24 | Our most critical targets are: |