Instruction: Our website is hosted externally by WPEngine. Issues within this application or regarding our content should be reported here. No security testing should be done against the platform itself. Any security issues found within the platform should be reported [directly to WPEngine](https://hackerone.com/wpengine).
Exclusions:
* Reports of xmlrpc.php being enabled will not be accepted without a POC of a actual exploit.
* Reports of user enumeration or information disclosure via `/wp-json/wp/v2/users/` will also not be accepted as this is by design in the Wordpress platform and used to populate information about post authors.