{"id":426213,"date":"2026-10-10T13:38:50","date_gmt":"2026-10-10T13:38:50","guid":{"rendered":"https:\/\/malwaretips.com\/blogs\/?p=426213"},"modified":"2026-10-10T13:38:50","modified_gmt":"2026-10-10T13:38:50","slug":"roundcube-mailbox-storage-limit-reached-email-scam","status":"publish","type":"post","link":"https:\/\/malwaretips.com\/blogs\/roundcube-mailbox-storage-limit-reached-email-scam\/","title":{"rendered":"Roundcube Mailbox Storage Limit Reached Email Scam: How It Steals Logins"},"content":{"rendered":"<p>Your inbox is quiet, then a storage warning says it might stop receiving messages. For anyone running a small business, that sounds like a problem worth fixing.<\/p><div id=\"mwtad2279979325\" class=\"gas_fallback-ad_309684--placement_406659\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3957935887\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>The message names Roundcube and offers two familiar-looking buttons. Before either becomes your next click, there are details in this particular alert worth examining.<\/p>\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1672\" height=\"941\" src=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/roundcube-hero.png\" alt=\"Illustrative Roundcube mailbox storage warning with Open cPanel and Open Roundcube buttons\" class=\"wp-image-426214\" title=\"\" srcset=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/roundcube-hero.png 1672w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/roundcube-hero-300x169.png 300w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/roundcube-hero-1024x576.png 1024w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/10\/roundcube-hero-1536x864.png 1536w\" sizes=\"auto, (max-width: 1672px) 100vw, 1672px\" \/><\/figure>\n<div id=\"mwtad4006553662\" class=\"gas_fallback-ad_309746-ad_309685-placement_406660\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"4456629336\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Overview<\/h2>\n<h3>What the Roundcube storage email claims<\/h3>\n<p>The reported email uses the subject \u201cRoundcube Mailbox Storage Alert.\u201d It says a mailbox reached its configured quota and that new mail may be rejected.<\/p><div id=\"mwtad830042835\" class=\"gas_fallback-ad_381396-ad_309685-placement_406667\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"1471373341\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>That premise is plausible because real hosted mailboxes can fill up. Plausibility, however, does not authenticate an unsolicited message or the links inside it.<\/p>\n<p>The specimen presents two actions, \u201cOpen cPanel\u201d and \u201cOpen Roundcube.\u201d Both reportedly lead away from legitimate administration and toward a lookalike webmail login.<\/p>\n<p>The request is for an email address and password. In this campaign, those credentials, not extra storage space, are the valuable outcome for the sender.<\/p><div id=\"mwtad3826111295\" class=\"gas_fallback-ad_309686-ad_309685-placement_406668\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"6935453015\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<h3>Why the familiar names matter<\/h3>\n<p>cPanel is a real hosting control panel, and Roundcube is a real webmail client supplied with many cPanel installations. Neither name makes this email authentic.<\/p>\n<p>A genuine quota issue can be checked inside your usual hosting dashboard. You do not need an emailed button to discover your account&#8217;s actual storage usage.<\/p>\n<ul>\n<li>The warning names a real condition that hosted mailboxes can experience.<\/li>\n<li>It offers two branded paths that appear to solve the problem.<\/li>\n<li>The reported destination asks for login credentials on an unrelated page.<\/li>\n<li>The safe check starts at a saved hosting address or through your administrator.<\/li>\n<\/ul>\n<h3>Our assessment and its limits<\/h3>\n<p>This is a credential-phishing campaign impersonating a mail administration notice. It should not be treated as a normal cPanel or Roundcube support message.<\/p><div id=\"mwtad1168002550\" class=\"gas_fallback-ad_381401-ad_309685-placement_406669\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"5315249587\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>We reviewed the reported wording and the documented destination behavior. We did not receive the original message in your inbox or test a live login submission.<\/p>\n<p>The particular phishing address may disappear or change. The useful warning is the route from a quota story to a password form outside your trusted workflow.<\/p>\n<div id=\"mwtad4012886383\" class=\"gas_fallback-ad_309747-ad_309685-placement_406661\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"9589536513\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Why a Mailbox Quota Warning Feels Credible<\/h2>\n<div id=\"mwtad144417279\" class=\"gas_fallback-ad_381404-ad_309685-placement_406670\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"8735619847\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><p>People who manage their own domain often know just enough about email hosting to recognize the word \u201cquota.\u201d They may not know where to check it.<\/p>\n<p>That gap is exactly where a polished warning works. It offers a shortcut at the moment you worry customers could be sending messages into a full mailbox.<\/p>\n<p>cPanel&#8217;s documentation explains that an account can have an allocated storage limit. When a mailbox exceeds it, incoming messages may be returned to senders.<\/p>\n<p>This real behavior is not evidence that this email measured your mailbox. The sender can repeat an accurate technical fact without having access to your account.<\/p>\n<p>Roundcube adds a second familiar label. A reader may think one button opens the server panel while the other opens the inbox.<\/p>\n<p>In the reported example, neither choice provided that distinction. Both routes were used to push the reader toward a fraudulent login.<\/p>\n<p>Notice the message&#8217;s broad instructions. It asks you to review storage and archive mail, but it cannot show a trustworthy account view inside your existing dashboard.<\/p>\n<p>Even the line advising you to verify the domain is not proof of honesty. Phishing messages sometimes include sensible-sounding security language to appear responsible.<\/p>\n<p>There is also no universal \u201cofficial Roundcube URL\u201d for every organization. Your mail host determines how you reach its webmail service.<\/p>\n<p>That makes an arbitrary cloud-hosted login page especially suspect. A familiar logo cannot bridge the mismatch between your organization&#8217;s domain and the destination.<\/p>\n<div id=\"mwtad57586967\" class=\"gas_fallback-ad_309748-ad_309685-placement_406662\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3906789406\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>How the Roundcube Mailbox Storage Scam Works<\/h2>\n<h3>Step 1: The email creates a delivery problem<\/h3>\n<p>The message says the mailbox has reached its limit and new mail could bounce. For a business user, missed orders and replies are easy to imagine.<\/p>\n<p>It does not need to know whether you are near the limit. The threat works because many people have seen genuine storage warnings elsewhere.<\/p>\n<p>If you do have a full mailbox, that coincidence can make the fraudulent email feel validated. The two facts must still be checked independently.<\/p>\n<p>The wording also avoids an outrageous deadline. A plain operational warning can seem more credible than a message shouting that an account closes in minutes.<\/p>\n<h3>Step 2: Two buttons present a convenient fix<\/h3>\n<p>\u201cOpen cPanel\u201d suggests administrator-level control. \u201cOpen Roundcube\u201d suggests a route to delete or archive messages without leaving webmail.<\/p>\n<p>Both choices appear to fit the stated problem, which reduces the chance that the reader questions why a link is needed at all.<\/p>\n<p>Button text is only a label. It does not tell you which website will open after redirects or where a submitted password will go.<\/p>\n<p>A shortened or cloud-hosted destination may still render a convincing form. The browser&#8217;s address bar matters more than the artwork on that form.<\/p>\n<h3>Step 3: A lookalike portal requests your password<\/h3>\n<p>The reported landing page resembles webmail and asks for an address and password. That is the moment the fake maintenance task becomes credential theft.<\/p>\n<p>Entering a password there does not free any space. It gives whoever operates the page a chance to log in to the actual mailbox.<\/p>\n<p>Some sites may reject the first entry and ask again, creating an excuse to collect a second password or a corrected spelling.<\/p>\n<p>We have not verified that extra behavior in this specimen. Treat any repeated password prompt on an untrusted site as another reason to stop.<\/p>\n<h3>Step 4: The account can become a bridge to other accounts<\/h3>\n<p>Email is often the recovery channel for shopping, banking, payroll, and workplace services. Control of one inbox can make password resets elsewhere possible.<\/p>\n<p>An intruder may also search invoices, customer details, or prior conversations. That information can make later messages to coworkers seem unusually convincing.<\/p>\n<p>Mail forwarding rules deserve special attention. A password change alone may not stop copies of incoming messages if an attacker added a hidden forwarder.<\/p>\n<p>Business accounts can also have delegated access or connected apps. These should be reviewed with the host after any suspected unauthorized login.<\/p>\n<p>None of this means every click causes those outcomes. The risk becomes much more serious if credentials were entered or the account shows unusual activity.<\/p>\n<div id=\"mwtad3884524604\" class=\"gas_fallback-ad_318930-ad_309685-placement_406663\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3818335085\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>How to Check a Real Quota Problem Safely<\/h2>\n<p>Open the hosting dashboard from a bookmark or type the provider&#8217;s address yourself. If an employer manages the mailbox, ask its IT team to check.<\/p>\n<p>Inside cPanel, the Email Accounts area can show current usage and allocated storage. Your host may offer a separate webmail path or its own interface.<\/p>\n<p>Compare the account shown there with the mailbox named in the warning. A legitimate problem should be visible in the service that actually stores your mail.<\/p>\n<p>If the dashboard reports plenty of room, the email&#8217;s claim is false for that account. Mark the message as phishing and avoid both buttons.<\/p>\n<p>If usage really is high, resolve it from the dashboard. You can remove unnecessary mail, change an allocation where authorized, or ask the host about options.<\/p>\n<p>Do not move to a link in the suspicious message merely because a separate quota problem exists. Coincidences do not make its destination safe.<\/p>\n<p>Webmail addresses differ among hosting providers. The provider&#8217;s official help pages or your organization&#8217;s documentation are better references than a message&#8217;s footer.<\/p>\n<p>When in doubt, send the full email to your administrator using your usual internal reporting channel. They can inspect headers and destination URLs without entering credentials.<\/p>\n<p>There is another reason not to rush: mailbox quotas and account-wide disk quotas are not always the same. Your provider may show several storage figures.<\/p>\n<p>An email that quotes one impressive number without identifying the relevant account, limit, and service may be trading on that confusion.<\/p>\n<p>Shared business mailboxes deserve a coordinated response. Deleting messages to free room without checking retention policies can remove records your team needs.<\/p>\n<p>Ask the person who administers the account before changing storage settings or bulk-deleting mail. The legitimate fix may be an allocation adjustment instead.<\/p>\n<p>If clients report bounces, ask them to forward the delivery failure through a known channel. A genuine bounce includes information your host can examine.<\/p>\n<p>Do not forward the suspicious message to clients as proof that your inbox is failing. That could accidentally spread the phishing link.<\/p>\n<p>Also be careful with \u201cupgrade storage\u201d offers. Some hosts sell larger plans, but a real purchase should start from the provider&#8217;s own account dashboard.<\/p>\n<p>Review the hosting invoice or contact contract owner if the quota change has a cost. The phishing email is not a reliable price quote.<\/p>\n<p>If your host recently migrated mail, verify the new access address with support through a known number. Migration confusion is another opening for impersonators.<\/p>\n<p>The practical habit is simple: treat email as a notice to investigate, not as the place where you authenticate or buy a repair.<\/p>\n<h2>Sender, Link, and Login Checks That Matter<\/h2>\n<h3>Look beyond the display name<\/h3>\n<p>\u201ccPanel Support\u201d can be typed into a sender name by anyone. Open the full address and compare its domain with your host&#8217;s published contact details.<\/p>\n<p>Even a matching-looking sender is not enough by itself. Mail can be spoofed, and a compromised account can send an authentic-looking message with malicious links.<\/p>\n<p>Your administrator can check authentication results and routing headers if the message matters. Ordinary users need not become email forensics experts before refusing a link.<\/p>\n<h3>Follow the address bar, not the email button<\/h3>\n<p>Preview the link without opening it where possible. On a phone, long-pressing may reveal the destination, though interfaces differ and previews can be incomplete.<\/p>\n<p>Cloud storage and generic page-hosting domains are not your organization&#8217;s cPanel installation. Legitimate services can use cloud infrastructure, but this mismatch requires verification.<\/p>\n<p>A familiar lock icon only says a connection is encrypted. It does not certify that the site is operated by your mail provider.<\/p>\n<h3>Know where your actual login belongs<\/h3>\n<p>Find your account&#8217;s normal sign-in route before an emergency. Save it as a bookmark, and ask your host which domain should appear in the browser.<\/p>\n<p>That small preparation removes the phisher&#8217;s advantage. When a scary warning arrives, you can check a known page rather than guessing which button is safe.<\/p>\n<h2>What to Do if You Have Fallen Victim to This Scam<\/h2>\n<ol>\n<li>\n<p><strong>If you only read the email, leave the links alone.<\/strong> Mark it as phishing, then check storage through your normal dashboard if the warning worries you.<\/p>\n<p>Reading a message is not the same as sharing a password. You do not need to reinstall software simply because the email appeared.<\/p>\n<\/li>\n<li>\n<p><strong>If you opened the page but entered nothing, close it.<\/strong> Check your browser downloads and notification permissions, especially if the page asked for more than a login.<\/p>\n<p>A reputable scanner such as Malwarebytes is useful if a file downloaded or your browser began behaving strangely. A click alone does not prove infection.<\/p>\n<\/li>\n<li>\n<p><strong>If you entered a password, change it from the real service immediately.<\/strong> Use a trusted device and a manually entered address, not the button in the message.<\/p>\n<p>Ask the host or administrator to terminate active sessions. Turn on multifactor authentication if available, and replace reused passwords on other accounts.<\/p>\n<\/li>\n<li>\n<p><strong>Inspect the account for persistence and misuse.<\/strong> Review recent logins, forwarding rules, filters, delegated access, recovery settings, and connected apps.<\/p>\n<p>Tell your workplace IT team promptly if this was a work mailbox. They can assess other accounts, message logs, and possible data exposure.<\/p>\n<\/li>\n<li>\n<p><strong>Check the inbox&#8217;s downstream accounts.<\/strong> Look for password reset notices, unfamiliar receipts, and outgoing messages you did not send.<\/p>\n<p>If the mailbox handles financial instructions, independently warn relevant colleagues or partners to verify any unexpected payment changes through known channels.<\/p>\n<\/li>\n<li>\n<p><strong>Keep evidence and report the attempt.<\/strong> Save the message with headers if possible, note the time, and report it to the host or your organization.<\/p>\n<p>If the page requested a download or enabled browser notifications, block that site&#8217;s permissions. AdGuard may help reduce malicious advertising, but it cannot reverse account compromise.<\/p>\n<\/li>\n<\/ol>\n<h2>Frequently Asked Questions<\/h2>\n<h3>Is every Roundcube mailbox storage alert a scam?<\/h3>\n<p>No. Mail quotas are real. This reported message is dangerous because its action buttons lead to a fraudulent login, not because storage warnings are impossible.<\/p>\n<h3>Does cPanel send a single universal login link?<\/h3>\n<p>No. Hosts configure account access differently. Confirm your own provider&#8217;s webmail address through a bookmark, official host documentation, or an administrator.<\/p>\n<h3>What if my mailbox really is full?<\/h3>\n<p>Resolve the quota inside your known hosting account. A genuine storage problem does not make links in an unrelated unsolicited email trustworthy.<\/p>\n<h3>Can the sender steal my password if I just open the email?<\/h3>\n<p>Simply reading it does not disclose your password. Risk rises if you enter credentials on the fake page, approve a login, or run a downloaded file.<\/p>\n<h3>Should I change my password after clicking the button?<\/h3>\n<p>If you typed it into the suspicious page, yes, immediately. If you only clicked and entered nothing, inspect downloads and account activity first.<\/p>\n<h3>Can an antivirus scan secure a compromised mailbox?<\/h3>\n<p>No. Scanning can help with a suspicious download. Account recovery requires a new password, session revocation, multifactor authentication, and review of forwarding settings.<\/p>\n<h2>The Bottom Line<\/h2>\n<p>The Roundcube mailbox storage alert borrows a real hosting problem and familiar names to move readers toward a fake password form. Its buttons cannot fix mail.<\/p>\n<p>Check quota and sign in through the account path you already trust. If you entered credentials, secure the mailbox and investigate what happened inside it.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Your inbox is quiet, then a storage warning says it might stop receiving messages. For anyone running a small business, that sounds like a problem worth fixing. The message names Roundcube and offers two familiar-looking &#8230; <\/p>\n<p class=\"read-more-container\"><a title=\"Roundcube Mailbox Storage Limit Reached Email Scam: How It Steals Logins\" class=\"read-more button\" href=\"https:\/\/malwaretips.com\/blogs\/roundcube-mailbox-storage-limit-reached-email-scam\/#more-426213\" aria-label=\"Read more about Roundcube Mailbox Storage Limit Reached Email Scam: How It Steals Logins\">Read more<\/a><\/p>\n","protected":false},"author":51,"featured_media":426214,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[49],"tags":[],"class_list":["post-426213","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-scam-reports","masonry-post","generate-columns","tablet-grid-50","mobile-grid-100","grid-parent","grid-50","resize-featured-image"],"_links":{"self":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/426213","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/users\/51"}],"replies":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/comments?post=426213"}],"version-history":[{"count":1,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/426213\/revisions"}],"predecessor-version":[{"id":426215,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/426213\/revisions\/426215"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media\/426214"}],"wp:attachment":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media?parent=426213"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/categories?post=426213"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/tags?post=426213"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}