For starters, we'll vigilantly monitor your site for security issues and software updates. When a new vulnerability is disclosed for WordPress, Drupal, Backdrop, CiviCRM, PHP, or any other software running on your server, a GR developer will evaluate the update as it pertains to your specific site.
If we determine the update is urgent, we'll apply it, test it, and launch it right away. If it's not truly urgent for you (often security vulnerabilities are narrowly conditional), we hold off and apply the update during your next regularly-scheduled round of security updates.