
About the company
Patchstack is the leading WordPress vulnerability intelligence provider.
We help hosting companies and website developers find and mitigate vulnerabilities in WordPress core, theme and plugins.
Recently the services have expanded to also cover Drupal & Joomla.
Patchstack runs a community-powered bug bounty program, and partners with hundreds of plugin developers like Elementor & WPRocket to help them fix vulnerabilities faster.
They also offer a managed vulnerability disclosure service to help plugin vendors comply with the Cyber Resilience Act.
Patchstack is also a member of the Open-Source Security Foundation, is backed by the European Innovation Council, and in 2024 was invited to Google’s AI for Cybersecurity startup program.