Privacy, Security and Compliance

Articles

Gravity Forms Security Whitepaper

Learn more about Gravity Forms software security in this free white paper which is forked from the original security white paper for WordPress.

WordPress, Gravity Forms, and GDPR Compliance

You’ve probably heard about GDPR compliance but aren’t quite sure how it affects your forms or WordPress site in general. Your best option is always to consult legal counsel, but we’ll try to get things clarified for you in the meantime.

URL Validation In Gravity Forms

Within Gravity Forms, URL validation methods exist to heighten security as well as avoid possible bugs. In this article, we will explain how URL validation works in Gravity Forms, and how to manipulate it.

Is Gravity Forms PCI Compliant?

The short answer is yes, Gravity Forms is PCI compliant. However, this is subject to change depending on your environment and setup, as Gravity Forms is simply a single piece of the puzzle.

Information for Security Researchers

If you have discovered a vulnerability in one of our products we want to hear from you as soon as possible. Please gather as much information together as you can so we can work quickly to address it.

The Importance of Updates

Often times when running a website, individuals will only make the changes they need and neglect the general maintenance of the site, including things such as updates.

What To Do If You Suspect a Security Issue

We take security issues very seriously and want to make sure that any security concerns are appropriately addressed in a timely manner.

How To Report a Security Issue

We take security issues very seriously and want to ensure that you always feel safe when using Gravity Forms. Here are a few steps you should take if you believe you have a security issue with Gravity Forms.

Security Best Practices

The advice and best practices in this section is to help site owners and administrators understand the issues and learn how to adjust the security features according to their needs.

HIPAA and Gravity Forms

When looking into HIPAA requirements for a website, we often get asked "Is Gravity Forms HIPAA compliant?". The question is rarely that simple, as much of compliance is dependent upon other factors.