Sorry, we don't support your browser.
Install a modern browser
Shield Security for WordPress
Let us know what security features you want to see in
ShieldPRO
.
Trending
Search
Make a suggestion
User login email notification
#106
My client is not an "admin" but an ordinary user. I'm the site admin and I'd like to get an email alert when they log in. They do not need to get the notification about their login, just to be sent to me 8site admin).
1
Turn off scan monitoring while changes are made
#105
Add a quick "turn off scan monitoring" while changes are made. When I push changes to templates and plugins I need to perform the scan to then confirm the changes, which is very time consuming. The plugin for cloudflare for example allows you to tu
2
Add unblocking tips into welcome to Pro email
#104
I subscribed for Pro and then I triggered the Shield offenses, my IP got blocked and I couldn't log into my site. I feel the part of being blocked is so critical and important that when one receive the welcome email and assistance in first steps,
1
Backup options
#103
Could different backup options be selected to run at different times? Full or initital back up Incremental DB only DB & Core ETC. As I see it, I can only run a full back up or nothing, I have a handful of sites that I run on the same box, running
1
Customize the logo that appears on apps like Authy
#102
Specifically with Authy, they have a developer console where you can specify the logo that shows up for users using Authy. I suppose that would mean that there would need to be a way to integrate Shield Security with Authy directly via API Keys, etc
3
Put a "Risk Rating" for each option like xml-rpc
#101
For me its just the "Anonymous Rest API" that is the big Seucrity threat, so I always disable that, but Allow XML-RPC. Would it be an idea to put a "Risk Rating" for each Option like these? 9/10 being very dangerous and 1/10 not dangerous... More
1
Ignore MU plugins activated check
#100
Must Use (MU) plugins are automatically activated and can't be manually activated/de-activated. They are often added by hosts/providers/agencies to ensure that functionality is available on all sites to keep them operational/secure/etc. However, th
1
Add a feature to ignore file paths for the Plugin/Theme Guard scan
#99
FB (scans) post: Every time All-in-one-WP migration gets updated, I get an email indicating that there is an issue found by the Plugin/Theme guard and it is always for the same index.php file in the same folder. Add a way to flag this file to not tr
1
Have a way to change the time to run scans
#98
I have 8 websites using Shield Pro on a shared hosting environment. I currently still only have the scans running once per day - although I intend to increase it. When looking at my hosting stats I can see a spike in CPU usage once a day when the sc
2
Limit devices for login
#97
To limit the number of devices a user can have detected by the 2fa, and lock additional devices. My ideas is allow my users to use the website only from 2 devices and additional devices disallow the login
1
Exclude "This Server's" IP address from traffic log viewing
#96
Add a checkbox to exclude the server's own IP address from traffic log viewing, as you can for the site admin's current IP address.
1
Download IP traffic logs in CSV format
#95
Allow IP traffic logs to be downloaded in CSV format for easy analysis / manipulation / reporting in a spreadsheet application of choice by the site admin.
1
Allow forcing of 2FA/MFA for different 2FA types
#93
Allow enforcing 2FA/MFA for different user groups Google Auth and Hardware 2FA in the same was as for E-mail 2FA. I think this might not have been implemented because you're in a loop when users haven't got 2FA/MFA configured, but have it enforced,
2
Unrecognised File Scanner with MainWP searchable directories Fix
#94
When MainWP runs it's security checks, it has a Fixer for searchable file directories, and it places blank index.php in directories that could otherwise be searchable (likely other protections in place, but it's still a good fix). However, the Unre
1
Require 2FA/MFA when magic links are used from MainWP/host control panels/etc
#92
When a "magic link" is used from another system such as MainWP, or a web host's control panel (or the likes of GridPane), 2FA/MFA is ignored. One school of thought is that someone should have good security on those systems ,and also already used 2F
1
Sign in
Make a suggestion