Please do not report security vulnerabilities as public GitHub issues.
Send security reports privately to contacto@calliope.com.ar and include:
- affected plugin and version;
- WordPress, PHP, and WooCommerce versions when relevant;
- clear reproduction steps;
- expected and observed behavior;
- impact assessment;
- sanitized logs or screenshots when useful.
Do not include real customer data, passwords, tokens, private keys, API keys, license secrets, or production credentials in reports.
Estudio Calliope follows a responsible disclosure process and will coordinate fixes through the official CalliopeWP channels.