- Tempo
- 0 ms
- Memoria
- 0.0 MB
- SQL
- +6
Informazioni
Vigilant provides enterprise-level WordPress security features completely free. No premium version, no upsells, no hidden features behind paywalls.
Protect your site with a complete security suite: firewall, two-factor authentication, brute force protection, security headers, file integrity monitoring, closed plugin detection, malware detection, user management, security audit logging, under attack mode, verification of its own files and much more.
Once activated, Vigilant immediately applies firewall rules against common attacks (SQL injection, XSS, file inclusion), security headers, login attempt monitoring, XML-RPC blocking, WordPress version hiding and sensitive file protection (.htaccess, wp-config.php).
Leggi tutto Mostra meno
Choose a preset and get protected instantly:
Standard – Balanced security suitable for most websites. Enables all modules with sensible defaults that won’t interfere with normal site operation.
Maximum Security – Strictest settings for high-security sites. Tighter rate limits, stronger CSP rules, mandatory admin notifications. May require fine-tuning for some setups.
You can always customize individual settings after applying a preset.
Is your site under active attack? Activate Under Attack mode with one click and stop malicious traffic instantly:
Under Attack mode works independently from your preset configuration. Your regular settings are preserved and restored when the mode deactivates.
Add a second verification step to your WordPress login:
Block malicious requests before they reach WordPress:
Stop unauthorized access attempts:
Comprehensive user account protection:
Achieve Grade A security ratings:
Detect unauthorized changes to your files and compromised plugins:
A tampered security plugin is worse than none, because it keeps reporting that everything is fine. Vigilant verifies its own files against the checksums WordPress.org publishes, a SHA-256 manifest shipped with the plugin and a fingerprint of that manifest stored in the database:
It detects tampering, not vulnerabilities in Vigilant itself. SECURITY.md explains what it covers, what it does not, and how to verify your installation from outside the server.
Track everything happening on your site:
Audit Alerts – get an email when the audit log points to something worth your attention, off by default and configured under Security Audit:
On-demand security audit built into the Dashboard. No external services, no accounts, no API keys – everything runs on your server:
Layered protection at the WordPress level – admin, content, head, feeds and database:
Control API access to your site:
Utilities included:
Your existing .htaccess, wp-config.php and robots.txt are automatically backed up before any modifications. Backups are stored in the WordPress database, never as files under the web root, and verified with MD5 checksums.
When you deactivate Vigilant, all security rules are automatically removed and your original configuration files are restored. No leftover code, no broken sites.
Vigilant checks its own files too, and tells you how to check them yourself: every release ships a MANIFEST.sha256 that sha256sum can verify, and WordPress.org publishes the same checksums for comparison.
Most WordPress security plugins reserve their best features for paid plans. Vigilant gives you everything upfront – no premium tier, no feature locks, no upsells. Firewall, 2FA with authenticator app, security headers, file integrity scanner, security audit, on-demand Security Check with weekly regression alerts, and more. All free, all maintained, all following WordPress coding standards.
We maintain a detailed feature comparison between Vigilant and other popular security plugins (Wordfence, Solid Security, AIOS, Sucuri, SG Security). See what each offers in its free version and where Vigilant fills the gaps.
Need private support or custom development?
Do you need one-on-one help, priority troubleshooting, or a custom feature, integration, or tweak built specifically for your site? I offer private support and custom development. Just contact me and tell me what you need.
Need help or have suggestions?
Love the plugin? Please leave us a 5-star review and help spread the word!
We are specialists in WordPress security, SEO, AI and performance optimization plugins. We create tools that solve real problems for WordPress site owners while maintaining the highest coding standards and accessibility requirements.
Schermate
Anteprime fornite dall'autore su wordpress.org.
Storico per versione
Mostra il dettaglio per versione (1 versioni)
Storico per versione
Mostra il dettaglio per versione (1 versioni)
Come evolve il plugin di versione in versione.
| Versione | Homepage | Admin | Ultima scansione |
|---|---|---|---|
| v3.0.0 | 1 scansione | 1 scansione | 4 ore fa |
Alternative nella stessa categoria
Altri plugin security misurati dalla community, ordinati dal più leggero al più pesante.
Ancora troppe poche scansioni per pubblicare il punteggio (2 ricevute).
Ancora troppe poche scansioni per pubblicare il punteggio (4 ricevute).
Ancora troppe poche scansioni per pubblicare il punteggio (2 ricevute).
Ancora troppe poche scansioni per pubblicare il punteggio (2 ricevute).
Ancora troppe poche scansioni per pubblicare il punteggio (3 ricevute).
Storico delle scansioni
Mostra il registro delle singole scansioni (2 scansioni)
Storico delle scansioni
Mostra il registro delle singole scansioni (2 scansioni)
| Data | Versione | Contesto | Punteggio | Grade | Tempo | Memoria |
|---|---|---|---|---|---|---|
| 4 ore fa | v3.0.0 | Homepage | 95/100 | A | 47 ms | 0.0 MB |
| 4 ore fa | v3.0.0 | Admin | 83/100 | B | 86 ms | 0.0 MB |