Improve relevancy of security update notifications within your Drupal site

Created on 16 March 2011, almost 14 years ago
Updated 29 January 2024, 11 months ago

Problem/Motivation

Security update notifications within a site appear in the administrative error styling and make a generalized statement about security updates without specifics on level of risk or relevancy to the site.

As one method of #1890678: [meta] Improve security release update rate β†’ this issue is about discussing possible technical solutions to improving the relevancy and actionability of security notifications with update.module.

Proposed resolution

(coming soon)

Original report by Tuck

In my experience, most security updates are unnecessary if a web site's registered users are trusted users (admins, editors, blogists etc.). Every time a module has to be updated, there is a risk that a web site starts malfunctioning, so an admin must be very careful when updating installed modules. AND, if the admin has made his own modifications to the module, he must update them and do some tests too.

So it would be great if there were two sorts of security update notifications. Like "Level 1" and "Level 2" security notifications. Level 1 would mean there is a security update available for sites who's users are non-trusted. Level 2 would mean there is an update for severe security hole which should be fixed on all sites.

Or, there could be a checkbox for each module on the available updates page (admin/reports/updates) so an admin could disable new update notifications for that module until the module's next security update becomes available.

✨ Feature request
Status

Active

Version

11.0 πŸ”₯

Component
UpdateΒ  β†’

Last updated 6 days ago

  • Maintained by
  • πŸ‡ΊπŸ‡ΈUnited States @tedbow
  • πŸ‡ΊπŸ‡ΈUnited States @dww
Created by

Live updates comments and jobs are added and updated live.
Sign in to follow issues

Comments & Activities

Not all content is available!

It's likely this issue predates Contrib.social: some issue and comment data are missing.

Production build 0.71.5 2024