Beschrijving
DawsonyWeb Security Shield protects your WordPress site from comment spam and unauthorised API access.
Comment Protection
- Master switch to completely disable all comments (form, REST API, XML-RPC, feeds)
- Invisible honeypot field to trap bots
- Minimum comment length enforcement
- Block all links or cap links per comment
- Require login to comment
- Keyword/phrase blocklist
API & REST Hardening
- Disable XML-RPC entirely (removes X-Pingback header too)
- Hide
/wp/v2/usersendpoint to prevent username harvesting - Require authentication for all REST API requests
- Optionally disable the REST API completely
- Block author enumeration via
/?author=N
Spam Rules
- Per-IP comment rate limiting (configurable max and time window)
- IP address blocklist — blocked IPs receive a 403 on any front-end request
- Rolling activity log (last 200 events)
Installatie
- Upload the
dawsonyweb-security-shieldfolder to/wp-content/plugins/. - Activate the plugin through the Plugins menu in WordPress.
- Go to Security Shield in the admin menu to configure.
Beoordelingen
Er zijn geen beoordelingen voor deze plugin.
Bijdragers & ontwikkelaars
“DawsonyWeb – Security Shield” is open source software. De volgende personen hebben bijgedragen aan deze plugin.
BijdragersVertaal “DawsonyWeb – Security Shield” in je eigen taal.
Interesse in ontwikkeling?
Bekijk de code, haal de SVN repository op, of abonneer je op het ontwikkellog via RSS.
Changelog
1.0.1
- Compatibility: tested up to WordPress 7.0.
1.0.0
- Initial release.
