44 plugins tagged with hardening
Hardens and protects your site by locking down login, REST API, XML‑RPC, file editor, and applying HTTP security headers.
Adds some extra security to your WordPress with only one click.
Basic hardening: secure headers, login honeypot, user enumeration blocking, generic login errors, rate limiting, and more.
Secure HTTP headers - Essential, and easy.
WordPress security scanner with 36 checks, malware scanning, core integrity verification, remediation, and 23 MCP abilities.
Lockora Security Audit checks WordPress security posture, hardening, core integrity, vulnerabilities, and optional AI reports.
Dessky Security is the ultralight plugin for basic Security Hardening. It is specially designed not to drain any resources from your website.
A simple way to clean and secure WordPress by disabling unnecessary features like comments, XML-RPC, and RSS feeds.
Connect your site to Webfiable (webfiable.com) to track config health and get security recommendations. Public early access (white march). Free.
Selectively disable WordPress features to improve performance, security, and cleanliness. Toggle each feature individually from a single settings page …
🛡️ Enterprise-grade WordPress security made simple. Implement military-standard HTTP security headers with zero technical knowledge required.
High-signal WordPress security auditing and hardening with practical site audit tools for administrators.
A lightweight, zero configuration plugin that removes all WordPress version output from your site for improved security and cleaner markup.
WordPress and hosting security scanner with plain-English findings, safe hardening actions, reports, and Pro AI summaries.
Create a private login URL and hide /wp-login.php with stealth 404s. Logged-out /wp-admin/ visits redirect to your homepage.
Protect your WordPress origin by requiring a secret request header and blocking direct access with Apache .htaccess rules.
All-in-one WordPress security with brute-force protection, hardening controls, and a clear failed login audit log.
Premium WordPress security with WAF, brute force block, URL obfuscation, malware scanning, and core reinstallation.
A lightweight plugin to disable XML-RPC, restrict the REST API, and hide the WordPress version.
Put your WordPress site in read-only mode — block persistent changes while keeping the site browsable until an administrator disables the freeze.
A basic security plugin for WordPress 4.x, 5.0 or higher. You can selectively disable unused features in WordPress core...
Enterprise-grade security engine featuring brute-force mitigation, autonomous system hardening, and a real-time command center.
TotalWeb strengthens your site security with malware defense, brute-force protection, firewall rules, and smart hardening controls.
WP security is a plugin responsible by security with short steps and fix the mainly security problems.