{"id":229701,"date":"2025-04-30T17:42:26","date_gmt":"2025-04-30T17:42:26","guid":{"rendered":"https:\/\/wordpress.org\/plugins\/securelywp-firewall-backup-malware-scanner-and-system-details\/"},"modified":"2025-11-22T01:28:45","modified_gmt":"2025-11-22T01:28:45","slug":"securelywp","status":"publish","type":"plugin","link":"https:\/\/test.wordpress.org\/plugins\/securelywp\/","author":23270864,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_crdt_document":"","version":"1.0.10","stable_tag":"1.0.10","tested":"6.8.5","requires":"5.0","requires_php":"","requires_plugins":null,"header_name":"SecurelyWP \u2013 all-in-one security","header_author":"<a href=\"https:\/\/github.com\/ashar-official\">mdashar<\/a> | <a href=\"https:\/\/securelywp.com\">SecurelyWP<\/a>","header_description":"Protect your WordPress site with SecurelyWP\u2014featuring a powerful Firewall with IP controls, advanced Malware Scanner with API-driven protection, and detailed System Insights. Security made simple, strong, and seamless.","assets_banners_color":"968967","last_updated":"2025-11-22 01:28:45","external_support_url":"","external_repository_url":"","donate_link":"","header_plugin_uri":"","header_author_uri":"","rating":0,"author_block_rating":0,"active_installs":20,"downloads":1002,"num_ratings":0,"support_threads":0,"support_threads_resolved":0,"author_block_count":0,"sections":["description","installation","faq","changelog"],"tags":{"1.0.0":{"tag":"1.0.0","author":"securelywp","date":"2025-04-30 17:41:56"},"1.0.1":{"tag":"1.0.1","author":"securelywp","date":"2025-05-01 19:11:48"},"1.0.10":{"tag":"1.0.10","author":"securelywp","date":"2025-11-22 01:28:45"},"1.0.2":{"tag":"1.0.2","author":"securelywp","date":"2025-05-03 10:30:28"},"1.0.3":{"tag":"1.0.3","author":"securelywp","date":"2025-05-07 11:46:03"},"1.0.4":{"tag":"1.0.4","author":"securelywp","date":"2025-08-10 15:05:47"},"1.0.5":{"tag":"1.0.5","author":"securelywp","date":"2025-08-13 05:15:13"},"1.0.6":{"tag":"1.0.6","author":"securelywp","date":"2025-08-14 13:51:27"},"1.0.7":{"tag":"1.0.7","author":"securelywp","date":"2025-08-16 13:28:23"},"1.0.8":{"tag":"1.0.8","author":"securelywp","date":"2025-08-19 04:43:07"},"1.0.9":{"tag":"1.0.9","author":"securelywp","date":"2025-10-12 15:36:15"}},"upgrade_notice":[],"ratings":[],"assets_icons":{"icon-128x128.png":{"filename":"icon-128x128.png","revision":3344712,"resolution":"128x128","location":"assets","locale":"","width":128,"height":128}},"assets_banners":{"banner-772x250.jpg":{"filename":"banner-772x250.jpg","revision":3342370,"resolution":"772x250","location":"assets","locale":"","width":772,"height":250},"banner-772x250.png":{"filename":"banner-772x250.png","revision":3344712,"resolution":"772x250","location":"assets","locale":"","width":772,"height":250}},"assets_blueprints":{},"all_blocks":[],"tagged_versions":["1.0.0","1.0.1","1.0.10","1.0.2","1.0.3","1.0.4","1.0.5","1.0.6","1.0.7","1.0.8","1.0.9"],"block_files":[],"assets_screenshots":{"Screenshot-10.png":{"filename":"Screenshot-10.png","revision":3345584,"resolution":"10","location":"assets","locale":"","width":675,"height":771},"Screenshot-4.png":{"filename":"Screenshot-4.png","revision":3345584,"resolution":"4","location":"assets","locale":"","width":1896,"height":884},"screenshot-1.png":{"filename":"screenshot-1.png","revision":3344712,"resolution":"1","location":"assets","locale":"","width":1495,"height":838},"screenshot-2.png":{"filename":"screenshot-2.png","revision":3344712,"resolution":"2","location":"assets","locale":"","width":1486,"height":839},"screenshot-3.png":{"filename":"screenshot-3.png","revision":3344712,"resolution":"3","location":"assets","locale":"","width":1489,"height":837},"screenshot-5.png":{"filename":"screenshot-5.png","revision":3345584,"resolution":"5","location":"assets","locale":"","width":1895,"height":880},"screenshot-6.png":{"filename":"screenshot-6.png","revision":3344712,"resolution":"6","location":"assets","locale":"","width":1689,"height":830},"screenshot-7.png":{"filename":"screenshot-7.png","revision":3344712,"resolution":"7","location":"assets","locale":"","width":1500,"height":841},"screenshot-8.png":{"filename":"screenshot-8.png","revision":3344712,"resolution":"8","location":"assets","locale":"","width":751,"height":839},"screenshot-9.png":{"filename":"screenshot-9.png","revision":3345584,"resolution":"9","location":"assets","locale":"","width":1978,"height":3527}},"screenshots":{"1":"Dashboard: Overview of your site\u2019s security status, including CAPTCHA and 2FA settings.","2":"System Details: Clear report of your site\u2019s version, themes, and more.","3":"Security Headers: Overview of active HTTP security headers.","4":"CAPTCHA Settings: Configure Cloudflare Turnstile and enable CAPTCHA for forms.","5":"Two-Factor Authentication: Configure 2FA methods and view recovery codes."},"jetpack_post_was_ever_published":false},"plugin_section":[],"plugin_tags":[362,2846,600,246376],"plugin_category":[54,59],"plugin_contributors":[242851,241626],"plugin_business_model":[],"class_list":["post-229701","plugin","type-plugin","status-publish","hentry","plugin_tags-captcha","plugin_tags-headers","plugin_tags-security","plugin_tags-two-factor-authentication-2fa","plugin_category-security-and-spam-protection","plugin_category-utilities-and-tools","plugin_contributors-mdashar","plugin_contributors-securelywp","plugin_committers-securelywp"],"banners":{"banner":"https:\/\/ps.w.org\/securelywp\/assets\/banner-772x250.png?rev=3344712","banner_2x":false,"banner_rtl":false,"banner_2x_rtl":false},"icons":{"svg":false,"icon":"https:\/\/ps.w.org\/securelywp\/assets\/icon-128x128.png?rev=3344712","icon_2x":false,"generated":false},"screenshots":[{"src":"https:\/\/ps.w.org\/securelywp\/assets\/screenshot-1.png?rev=3344712","caption":"Dashboard: Overview of your site\u2019s security status, including CAPTCHA and 2FA settings."},{"src":"https:\/\/ps.w.org\/securelywp\/assets\/screenshot-2.png?rev=3344712","caption":"System Details: Clear report of your site\u2019s version, themes, and more."},{"src":"https:\/\/ps.w.org\/securelywp\/assets\/screenshot-3.png?rev=3344712","caption":"Security Headers: Overview of active HTTP security headers."},{"src":"https:\/\/ps.w.org\/securelywp\/assets\/Screenshot-4.png?rev=3345584","caption":"CAPTCHA Settings: Configure Cloudflare Turnstile and enable CAPTCHA for forms."},{"src":"https:\/\/ps.w.org\/securelywp\/assets\/screenshot-5.png?rev=3345584","caption":"Two-Factor Authentication: Configure 2FA methods and view recovery codes."},{"src":"https:\/\/ps.w.org\/securelywp\/assets\/screenshot-6.png?rev=3344712","caption":""},{"src":"https:\/\/ps.w.org\/securelywp\/assets\/screenshot-7.png?rev=3344712","caption":""},{"src":"https:\/\/ps.w.org\/securelywp\/assets\/screenshot-8.png?rev=3344712","caption":""},{"src":"https:\/\/ps.w.org\/securelywp\/assets\/screenshot-9.png?rev=3345584","caption":""},{"src":"https:\/\/ps.w.org\/securelywp\/assets\/Screenshot-10.png?rev=3345584","caption":""}],"raw_content":"<!--section=description-->\n<p>SecurelyWP is a hassle-free security plugin that makes your WordPress site safer the moment you activate it. Most features work out of the box, with optional CAPTCHA and two-factor authentication (2FA) configuration for enhanced protection. It includes strong security features, system details, security headers, CAPTCHA integration, and 2FA to keep your site secure and healthy.<\/p>\n\n<p>Why Choose SecurelyWP?<\/p>\n\n<ul>\n<li>Works Out of the Box: Most security features activate automatically upon installation.<\/li>\n<li>Comprehensive Protection: Guards against hacking, malicious files, form spam, and unauthorized access.<\/li>\n<li>Lightweight: Designed to run smoothly without affecting your site\u2019s speed or performance.<\/li>\n<li>Free Features: Includes system details, security headers, CAPTCHA, and 2FA to monitor and protect your site.<\/li>\n<\/ul>\n\n<h3>Features<\/h3>\n\n<ul>\n<li><p>Hide WordPress Version<\/p>\n\n<ul>\n<li>Why: Stops hackers from targeting weaknesses in your WordPress version.  <\/li>\n<li>Impact: Good protection with no effect on your site\u2019s appearance.<\/li>\n<\/ul><\/li>\n<li><p>Disable PHP Execution in Uploads Folder<\/p>\n\n<ul>\n<li>Why: Prevents harmful scripts from running if someone uploads a malicious file.  <\/li>\n<li>Impact: Strong defense against file-based attacks.<\/li>\n<\/ul><\/li>\n<li><p>Prevent User Enumeration<\/p>\n\n<ul>\n<li>Why: Blocks hackers from guessing usernames through sneaky methods.  <\/li>\n<li>Impact: Keeps your user list safe from prying eyes.<\/li>\n<\/ul><\/li>\n<li><p>Detect &amp; Warn About \u201cadmin\u201d Username<\/p>\n\n<ul>\n<li>Why: Alerts you if your site uses the risky \u201cadmin\u201d username.  <\/li>\n<li>Impact: Big security boost if you change the username.<\/li>\n<\/ul><\/li>\n<li><p>Disable File Editing in Dashboard<\/p>\n\n<ul>\n<li>Why: Stops anyone from modifying your site\u2019s code through the WordPress dashboard.  <\/li>\n<li>Impact: Major safeguard against unauthorized code changes.<\/li>\n<\/ul><\/li>\n<li><p>Force HTTPS for Login &amp; Admin<\/p>\n\n<ul>\n<li>Why: Ensures your login and admin pages use a secure connection.  <\/li>\n<li>Impact: Critical for keeping your credentials safe.<\/li>\n<\/ul><\/li>\n<li><p>Basic Brute Force Protection (Lite)<\/p>\n\n<ul>\n<li>Why: Temporarily blocks repeated failed login attempts.  <\/li>\n<li>Impact: Strong protection against login attacks.<\/li>\n<\/ul><\/li>\n<li><p>System Details<\/p>\n\n<ul>\n<li>Why: Shows important info about your site to monitor its health.  <\/li>\n<li>Impact: Keeps you informed about your site\u2019s status.<\/li>\n<\/ul><\/li>\n<li><p>Security Headers<\/p>\n\n<ul>\n<li>Why: Adds HTTP headers to improve your site\u2019s security.  <\/li>\n<li>Impact: Strengthens your site\u2019s defense with minimal setup.<\/li>\n<\/ul><\/li>\n<li><p>CAPTCHA Protection (Cloudflare Turnstile)<\/p>\n\n<ul>\n<li>Why: Adds CAPTCHA to prevent spam and bot submissions.  <\/li>\n<li>Impact: Enhances form security with user-friendly CAPTCHA.<\/li>\n<\/ul><\/li>\n<li><p>Two-Factor Authentication (2FA)<\/p>\n\n<ul>\n<li>Why: Adds an extra layer of security by requiring a second verification step during login.  <\/li>\n<li>Impact: Significantly reduces the risk of unauthorized access.  <\/li>\n<\/ul><\/li>\n<\/ul>\n\n<p><strong>2FA Features:<\/strong><br \/>\n- Authenticator App (TOTP): Use apps like Google Authenticator or Authy for time-based codes.<br \/>\n- Email 2FA: Receive codes via email for verification.<br \/>\n- Recovery Codes: Generate emergency codes for access if other methods are unavailable.<br \/>\n- Per-User Settings: Each user can configure their own 2FA preferences.<br \/>\n- Multisite Support: Super admins can enforce 2FA network-wide.<br \/>\n- Flexible Options: Choose primary 2FA method from TOTP, Email 2FA, or Recovery Codes.<\/p>\n\n<p><strong>Supported Forms, Plugins &amp; Multisite for CAPTCHA:<\/strong><br \/>\n- Core WordPress: Login, Registration, Lost Password, Comment<br \/>\n- E-commerce &amp; Membership: WooCommerce Checkout, MemberPress, Ultimate Member, WP-Members<br \/>\n- Form Plugins: WPForms, Gravity Forms, Contact Form 7 (CF7), Formidable Forms, Forminator, Elementor Pro, Easy Digital Downloads (EDD), Mailchimp for WordPress<br \/>\n- Community \/ Forums: BuddyPress, bbPress<br \/>\n- Multisite: Multisite Signup Forms<\/p>\n\n<h3>How to Set Up CAPTCHA with Cloudflare Turnstile<\/h3>\n\n<ol>\n<li><strong>Sign Up for Cloudflare:<\/strong> Go to https:\/\/www.cloudflare.com\/ and create a free account or log in.  <\/li>\n<li><strong>Add Your Site:<\/strong> Click \"Add a Site\" in the dashboard and enter your domain.  <\/li>\n<li><strong>Access Turnstile:<\/strong> Navigate to the \"Turnstile\" section in the Cloudflare dashboard.  <\/li>\n<li><strong>Create a Turnstile Widget:<\/strong><br \/>\n\n<ul>\n<li>Click \"Add Widget\"  <\/li>\n<li>Provide a name (e.g., \"SecurelyWP CAPTCHA\")  <\/li>\n<li>Add Hostnames (your domain, e.g., example.com) \u2192 Click \"Add\"  <\/li>\n<li>Choose the widget type (\"Managed\")  <\/li>\n<\/ul><\/li>\n<li><strong>Get Your Keys:<\/strong> Copy the Site Key and Secret Key.  <\/li>\n<li><strong>Add Keys to SecurelyWP:<\/strong> Go to SecurelyWP &gt; CAPTCHA Settings in WordPress \u2192 paste keys \u2192 enable CAPTCHA for desired forms.  <\/li>\n<li><strong>Test Your CAPTCHA:<\/strong> Visit a form to ensure the CAPTCHA widget appears and works correctly.<\/li>\n<\/ol>\n\n<h3>How to Set Up Two-Factor Authentication<\/h3>\n\n<ol>\n<li><strong>Access 2FA Settings:<\/strong> Go to \"Profile\" &gt; \"Two-Factor Authentication\" in your WordPress dashboard.  <\/li>\n<li><strong>Enable 2FA Methods:<\/strong><br \/>\n\n<ul>\n<li>Authenticator App: Scan the QR code or enter the secret into your app (Google Authenticator, Authy). Verify with a code.  <\/li>\n<li>Email 2FA: Enable to receive codes via email.  <\/li>\n<li>Recovery Codes: Generate emergency codes. Copy or download codes for safekeeping.  <\/li>\n<\/ul><\/li>\n<li><strong>Choose Primary Method:<\/strong> Select your preferred 2FA method (Authenticator App, Email, or Recovery Codes).  <\/li>\n<li><strong>Test 2FA:<\/strong> Log out and log in to verify the 2FA prompt appears below the login form.  <\/li>\n<li><strong>Multisite (Super Admins):<\/strong> Enable network-wide 2FA enforcement for all users.<\/li>\n<\/ol>\n\n<!--section=installation-->\n<ol>\n<li>Go to \"Plugins\" &gt; \"Add New,\" search for \"SecurelyWP,\" click \"Install Now\" and \"Activate.\"  <\/li>\n<li>Or upload the plugin ZIP file via \"Plugins\" &gt; \"Add New\" &gt; \"Upload Plugin.\"  <\/li>\n<li>Automatic Protection: Most features start protecting your site immediately upon activation.  <\/li>\n<li>Optional CAPTCHA Setup: Go to SecurelyWP &gt; CAPTCHA Settings and add your Cloudflare Turnstile keys.  <\/li>\n<li>Optional 2FA Setup: Go to \"Profile\" &gt; \"Two-Factor Authentication\" to configure 2FA.  <\/li>\n<li>Check Dashboard: Visit \"SecurelyWP\" to view site health, scan for risks, or configure settings.<\/li>\n<\/ol>\n\n<!--section=faq-->\n<dl>\n<dt id='do%20i%20need%20to%20configure%20anything%20after%20installing%20securelywp%3F'><h3>Do I need to configure anything after installing SecurelyWP?<\/h3><\/dt>\n<dd><p>Most features work automatically. For CAPTCHA, add Cloudflare Turnstile keys. For 2FA, configure under \"Profile\" &gt; \"Two-Factor Authentication.\"<\/p><\/dd>\n<dt id='will%20this%20plugin%20slow%20down%20my%20site%3F'><h3>Will this plugin slow down my site?<\/h3><\/dt>\n<dd><p>No, SecurelyWP is lightweight and won\u2019t affect performance.<\/p><\/dd>\n<dt id='does%20it%20work%20with%20my%20theme%20or%20other%20plugins%3F'><h3>Does it work with my theme or other plugins?<\/h3><\/dt>\n<dd><p>Yes, SecurelyWP works with any theme and most plugins.<\/p><\/dd>\n<dt id='what%20if%20my%20site%20doesn%E2%80%99t%20have%20https%3F'><h3>What if my site doesn\u2019t have HTTPS?<\/h3><\/dt>\n<dd><p>\"Force HTTPS\" requires SSL. Other features, including 2FA, work fine without HTTPS.<\/p><\/dd>\n<dt id='can%20i%20use%20securelywp%20on%20a%20multisite%3F'><h3>Can I use SecurelyWP on a multisite?<\/h3><\/dt>\n<dd><p>Yes, including signup forms for CAPTCHA and network-wide 2FA.<\/p><\/dd>\n<dt id='where%20do%20i%20get%20cloudflare%20turnstile%20keys%3F'><h3>Where do I get Cloudflare Turnstile keys?<\/h3><\/dt>\n<dd><p>Sign up at Cloudflare, add your site, and create a Turnstile widget.<\/p><\/dd>\n<dt id='how%20do%20i%20set%20up%202fa%20for%20my%20account%3F'><h3>How do I set up 2FA for my account?<\/h3><\/dt>\n<dd><p>Go to \"Profile\" &gt; \"Two-Factor Authentication,\" enable your preferred methods, and follow setup instructions.<\/p><\/dd>\n\n<\/dl>\n\n<!--section=changelog-->\n<h4>1.0.9<\/h4>\n\n<ul>\n<li>Added comprehensive cache purging system with admin bar button.<\/li>\n<li>Added support for purging WordPress internal cache, object cache, transients, and opcode cache.<\/li>\n<li>Added detection and purging of popular caching plugin caches (WP Super Cache, W3 Total Cache, LiteSpeed Cache, WP Rocket, etc.).<\/li>\n<li>Added browser cache refresh functionality with asset versioning.<\/li>\n<\/ul>\n\n<h4>1.0.8<\/h4>\n\n<ul>\n<li>Added Firewall.  <\/li>\n<\/ul>\n\n<h4>1.0.7<\/h4>\n\n<ul>\n<li>Added Two-Factor Authentication (2FA) with Authenticator App (TOTP), Email 2FA, and Recovery Codes.  <\/li>\n<li>Added per-user 2FA settings under Profile for all roles.  <\/li>\n<li>Added multisite support for network-wide 2FA enforcement by super admins.  <\/li>\n<li>Added 2FA form below WordPress login with verification.  <\/li>\n<\/ul>\n\n<h4>1.0.6<\/h4>\n\n<ul>\n<li>Added CAPTCHA Protection using Cloudflare Turnstile for forms.  <\/li>\n<\/ul>\n\n<h4>1.0.5<\/h4>\n\n<ul>\n<li>Added Security Headers feature with industry-standard HTTP headers.  <\/li>\n<\/ul>\n\n<h4>1.0.4<\/h4>\n\n<ul>\n<li>Added Hide WordPress Version  <\/li>\n<li>Added Disable PHP Execution in Uploads Folder  <\/li>\n<li>Added Prevent User Enumeration  <\/li>\n<li>Added Detect &amp; Warn About \u201cadmin\u201d Username  <\/li>\n<li>Added Disable File Editing in Dashboard  <\/li>\n<li>Added Force HTTPS for Login &amp; Admin  <\/li>\n<li>Added Basic Brute Force Protection<\/li>\n<li>Added System Details<\/li>\n<li>Major features released<\/li>\n<\/ul>","raw_excerpt":"SecurelyWP is a simple security plugin that protects your WordPress site right after activation\u2014no setup needed for most features.","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/test.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin\/229701","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/test.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin"}],"about":[{"href":"https:\/\/test.wordpress.org\/plugins\/wp-json\/wp\/v2\/types\/plugin"}],"replies":[{"embeddable":true,"href":"https:\/\/test.wordpress.org\/plugins\/wp-json\/wp\/v2\/comments?post=229701"}],"author":[{"embeddable":true,"href":"https:\/\/test.wordpress.org\/plugins\/wp-json\/wporg\/v1\/users\/securelywp"}],"wp:attachment":[{"href":"https:\/\/test.wordpress.org\/plugins\/wp-json\/wp\/v2\/media?parent=229701"}],"wp:term":[{"taxonomy":"plugin_section","embeddable":true,"href":"https:\/\/test.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_section?post=229701"},{"taxonomy":"plugin_tags","embeddable":true,"href":"https:\/\/test.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_tags?post=229701"},{"taxonomy":"plugin_category","embeddable":true,"href":"https:\/\/test.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_category?post=229701"},{"taxonomy":"plugin_contributors","embeddable":true,"href":"https:\/\/test.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_contributors?post=229701"},{"taxonomy":"plugin_business_model","embeddable":true,"href":"https:\/\/test.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_business_model?post=229701"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}