On 27 April 2026, Greenhost identified and resolved a security vulnerability that exposed limited customer data to unauthorized access. 59 customers in total were affected. This post is the public record of what happened, what was exposed, and what comes next.
Greenhost has written openly when things go wrong, like when we had major outages in 2018 and 2021. We are writing this post because transparency is nice at comfortable times, but especially important in the uncomfortable moments.
Here is what happened
A hidden API endpoint, intended only for Greenhost staff, was deployed in 2023 with...
Read more...