
FirePhage Security helps you monitor WordPress security locally with malware scanning, official checksum verification, login protection, update visibility, and optional FirePhage dashboard connectivity.
FirePhage Security includes:
FirePhage Security is licensed under GPLv2 or later.
All code and assets bundled inside this plugin are either:
Bundled third-party asset:
Choices.js is distributed under the MIT License, which is GPL-compatible.
This plugin can contact external services in three cases.
If the site owner explicitly enables the optional FirePhage checksum cache in Scanner Settings or during first-run setup, the plugin requests the same checksum metadata from FirePhage first and then falls back to WordPress.org if needed. These requests send only the package type, slug, and version needed for checksum verification.
When you manually choose Compare or Restore for an official WordPress.org checksum mismatch, the plugin may request the matching reference file through FirePhage so it can show a file comparison or restore the official file you selected. This happens only after a user action and is not part of normal background scanning.
FirePhage is used as a retrieval layer for official WordPress.org reference files; the plugin does not execute arbitrary remote code.
Service: https://firephage.com
Privacy policy: https://firephage.com/privacy
Terms: https://firephage.com/terms
Service: https://firephage.com
Privacy policy: https://firephage.com/privacy
Terms: https://firephage.com/terms
Service: https://firephage.com
Privacy policy: https://firephage.com/privacy
Terms: https://firephage.com/terms