Security Of Joomshaper Products - Question | JoomShaper

is live, now with multi-currency selling.

Security Of Joomshaper Products

WJ

Wilson Junior

SP Page Builder 2 weeks ago

I have been a Joomshaper customer for many years and want to continue using your excellent extensions, however, in recent months, security issues with Helix Ultimate and SP Page Builder have reached critical levels. I would like to suggest adding a dedicated "Security" tab to the website for logged-in users, that consolidates everything—articles, alerts, recommendations, third-party posts, links to the scan extension download area and even links to relevant forum threads containing solutions—essentially, everything important regarding security. While information is being sent to users, it is currently too scattered across the Joomshaper site. Just a suggestion. Thanks.

0
14 Answers
Mehtaz Afsana Borsha
Mehtaz Afsana Borsha
Accepted Answer
Support Agent 1 week ago #232943

Hi,

Could you please confirm if this issue is resolved? If everything is working as expected, feel free to mark the accepted answer to close this thread.

0
Mehtaz Afsana Borsha
Mehtaz Afsana Borsha
Accepted Answer
Support Agent 1 week ago #233008

Thanks for accepting the answer.

0
Mehtaz Afsana Borsha
Mehtaz Afsana Borsha
Accepted Answer
Support Agent 2 weeks ago #232645

Hi,

Thank you for sharing this suggestion. A dedicated Security section would definitely make it easier for users to find important updates, recommendations, and solutions in one place.

At the moment, security-related information is spread across announcements, forum posts, and documentation, so having a central hub with alerts, best practices, extension updates, and related resources would improve the user experience.

I will share this feedback with the team for consideration. Thank you for taking the time to suggest this.

-Regards.

0
WJ
Wilson Junior
Accepted Answer
2 weeks ago #232649

Thanks!

0
Paul Frankowski
Paul Frankowski
Accepted Answer
Senior Staff 2 weeks ago #232646

Hi Wilson,

We can consider that. Thanks. I will ask.

For example, today newsletter was clear that is typical security update with all needed details that webmaster should know.

About Documenation section, for example, I added two weekes ago: https://www.joomshaper.com/documentation/sp-page-builder/troubleshooting#how-to-clean-an-infected-joomla-4x-6x-site

we have also blog posts about that.

Shared idea with CEO idea. Let's wait and we will see.

0
WJ
Wilson Junior
Accepted Answer
2 weeks ago #232648

Yes, and I'm already working on the update. Thanks!

0
Mehtaz Afsana Borsha
Mehtaz Afsana Borsha
Accepted Answer
Support Agent 2 weeks ago #232735

Glad to know that.

0
Paul Frankowski
Paul Frankowski
Accepted Answer
Senior Staff 2 weeks ago #232744

In general, we produce templates and extensions; we are not a typical security company who regularly publish posts & tips on those topics like Securi.net or other companies do.

Thanks for understanding.

0
JS
Joshua Stamp
Accepted Answer
2 weeks ago #232760

Hi Paul, please clarify JS does not prioritize the security of the company's products?

0
Paul Frankowski
Paul Frankowski
Accepted Answer
Senior Staff 2 weeks ago #232763

No, I mean that probably we will not add a new menu item "Security". This topic still be separated between documenation, blog posts, changelog etc. as it's now. And yes, with each update will try to increase security level as we did on Friday with Helix Ultimate update (2.2.10), and "tomorrow" with Helix3 etc.

Tips for typical webmaster:

  1. Read changelog / newsletter post
  2. Update extension (or install extension that manage update system for extensions and Joomla itself)
  3. If you manage several websites - consider using service like mysites.guru
  4. Install firewall component
0
JS
Joshua Stamp
Accepted Answer
2 weeks ago #232772

Hi Paul, thumbs Up

0
WJ
Wilson Junior
Accepted Answer
1 week ago #232960

At first, I thought the idea had been well received, but after reading Paul’s latest posts, I realized that Joomshaper isn’t concerned with consolidating this information at this turbulent time, given the security issues with Helix Ultimate and SP Page Builder. On the contrary, the list of “tips” is very simplified; for example, the sppb scanner extension—which is essential for mapping—is mentioned in some forum thread. I understand that Joomshaper isn’t a “typical security company,” but at the very least, they should publish a blog post compiling all the tips, links, and information on where to download the scan tool, among other important points relevant to minimizing the impact of security vulnerabilities identified in products such as Helix, Helix Ultimate, and SP Page Builder.

0
Paul Frankowski
Paul Frankowski
Accepted Answer
Senior Staff 1 week ago #232965

I have written a few ones, some years ago (in our BLOG), and also a whole book. But we can consider a new one, but remember that any article wil not replace years of expirence, or text of whole book about security topics.

You won't be a doctor after one weekend online course.

0
WJ
Wilson Junior
Accepted Answer
1 week ago #233017

Paul, I think my suggestion took a different path than I intended. I'm a big fan of your products. Maybe it's just me who thinks the last few weeks have been tough because of the vulnerabilities, so let's put that aside and move on. Thanks for listening. Thanks Mehtaz Afsana too.

0