Security Vulnerabilities in Bubble

I appreciate the offer @fede.bubble although such a next step serves to validate the frustration I’m sure many bubblers feel about having Bubble own the platform’s GDPR/PCI compliance status.

Support tickets lead nowhere. Emails to @josh or @emmanuel lead nowhere. Emails to security@bubble.io lead nowhere. Then a community moderator graciously offers to “pass it along”. To whom? Whomever it is, “they” already have it.

July 2020 Forum Post
September 2022 Forum Post
August 2022 Forum Post
May 2022 Forum Post

Don’t worry. If we close it. It will go away.

I just received another update that can best be summarized as, “No plans to resolve anything because it complex.” Clearly.

It’s not my privacy I’m worried about, it’s the integrity of every Bubbler trying to convince their customer’s to buy a non-compliant (GDPR/PCI) solution.

Despite having spent countless hours pouring their soul into the application, the best they can say is that the base platform is non-compliant and there is no plan to update jquery.js or quill.js in the foreseeable future. Bitterly disappointing for anyone trying to take the platform seriously.

1 Like