Securantis
WordPressWooCommerceWordPress & WooCommerce plugin

Complete WordPress security, in a truly usable interface.

Firewall, scanner, connections, 2FA, CAPTCHA, quarantine, content protection and WooCommerce monitoring in a single plugin.

WordPress 5.8 and up · WooCommerce compatible · PHP 7.2+

Active protection

Dashboard & scoreSummary view of protections, events, scans and recommendations with a security score.
Application firewallDetection of SQLi, XSS, path traversal, command execution, bots and anomalous requests.
High-confidence blockingCertain signatures may be blocked; ambiguous signals remain under surveillance to limit false positives.
Fail-open compatibilityA Securantis internal error does not take the site offline; payments, webhooks, REST, AJAX, cron and business forms are excluded from uncertain blocking.

Product interface

Explore the interface before installing it.

This overview includes the menus, indicators and screens available in the plugin wordpress & woocommerce. Use the left-hand menu.

WordPressMy site
Admin

Security center WordPress

LICENSE ACTIVE

Real-time protection

Your site is monitored.

Firewall, connections, scans and sensitive files combined in a single view.

Run a scanConfigure
Score92/100 · Excellent
Blocked in the last 24 h184over 7 days: 863
Login failures7over 7 days: 31
Distinct IPs42over 7 days
Quarantined0no action
Firewall activity7 days
Last scanSTABLE
12 684Scanned
0Critical
3To verify

Guided analysis

Security scanner

Core, plugins, themes, uploads and sensitive directories.

Run analysis
Score92 / 100
Files12 684
Critical0
Warnings3
Results ranked by confidenceAnalysis completed
wp-config.phpRecognized legitimate file
SAFE
uploads/cache/index.phpKnown guard file
AUTHORIZED
custom-plugin/legacy.phpWeak signature to verify
MEDIUM

Premium firewall

Adaptive blocking

SQLi, XSS, path traversal, bots and abnormal traffic.

ACTIVE
ModeBlocking
ProfileBalanced
Auto-blockingEnabled
EventIPStatus
SQL injection blocked185.220.101.4BLOCKED
Malicious bot45.9.148.22BLOCKED
Abnormal traffic limited193.32.127.8LIMITED

Sensitive accounts

Logins, 2FA and CAPTCHA

Brute-force reduction and administrator access control.

Two-factor authenticationACTIVE

Active for administrators

Brute force protectionACTIVE

5 attempts / 15 minutes

Adaptive CAPTCHAACTIVE

Logins & sensitive forms

Connection logACTIVE

30-day retention

Modular protection

10 active protections

Application firewall
Automatic scanner
Connection protection
Two-factor authentication
CAPTCHA
Email alerts
WooCommerce monitoring
Content protection
Manual quarantine
Remote reports

Controlled isolation

Files & quarantine

Critical files are backed up before isolation and can be restored.

FileAction
No files in quarantine

Your site does not contain any isolated items at the moment.

Securantis WordPress

Connection protection

Reduce automated attacks without blocking the storefront.

Attempt limitingACTIVE

Configurable thresholds and block durations.

Custom URLACTIVE

Masking of wp-login.php and wp-admin.

AllowlistACTIVE

Trusted IPs are never blocked.

Generic errorsACTIVE

Less information exposed to bots.

Settings remain under the site administrator's control and can be adapted to the site's operation.

Securantis WordPress

Notifications & reports

Choose the events that should trigger an email.

Critical alertsACTIVE

Immediate sending for significant risks.

Weekly reportACTIVE

Regular security summary.

WooCommerceACTIVE

Configurable commercial notifications.

RecipientsACTIVE

Customizable recipient addresses.

Settings remain under the site administrator's control and can be adapted to the site's operation.

Securantis WordPress

Google reCAPTCHA

Protect sensitive forms with reCAPTCHA v2 or v3.

LoginACTIVE

WordPress access protection.

RegistrationACTIVE

Reduction of automated accounts.

Lost passwordACTIVE

Recovery form protection.

WooCommerceACTIVE

Supported e-commerce forms.

Settings remain under the site administrator's control and can be adapted to the site's operation.

Securantis WordPress

2FA authentication

Add a second factor to sensitive accounts.

TOTP applicationACTIVE

Compatible with authentication apps.

Email codeACTIVE

Additional method via email.

Activation per userACTIVE

Each account controls its configuration.

Administrator controlACTIVE

Clear view of protection status.

Settings remain under the site administrator's control and can be adapted to the site's operation.

Securantis WordPress

Content protection

Configure local protection for texts and images.

TextsACTIVE

Configurable content checks.

ImagesACTIVE

Protection of site media.

ExclusionsACTIVE

Adaptation to allowed pages or roles.

LoggingACTIVE

Events visible in Securantis.

Settings remain under the site administrator's control and can be adapted to the site's operation.

Securantis WordPress

WooCommerce monitoring

Monitor sensitive operations in your store.

Gateways & banksACTIVE

Detection of payment changes.

Orders & refundsACTIVE

Monitoring of unusual activity.

CouponsACTIVE

Creations and modifications logged.

WebhooksACTIVE

Additions, changes and deletions monitored.

Settings remain under the site administrator's control and can be adapted to the site's operation.

Securantis WordPress

Securantis License & Connection

Link the site to your account and receive private updates.

ActivationACTIVE

Controlled license for the domain.

Agent statusACTIVE

Synchronization and connection tracking.

Cloud reportsACTIVE

Centralized security reports.

UpdatesACTIVE

HTTPS and SHA-256 fingerprint verified.

Settings remain under the site administrator's control and can be adapted to the site's operation.
Interactive preview of the screens of WordPress plugin — use the menu.

Coverage

Each critical layer is taken into account.

Protections do not rely solely on a list of signatures: they combine context, rules and event reports.

Dashboard & score

Summary view of protections, events, scans and recommendations with a security score.

Application firewall

Detection of SQLi, XSS, path traversal, command execution, bots and anomalous requests.

High-confidence blocking

Certain signatures may be blocked; ambiguous signals remain under surveillance to limit false positives.

Fail-open compatibility

A Securantis internal error does not take the site offline; payments, webhooks, REST, AJAX, cron and business forms are excluded from uncertain blocking.

Connection protection

Attempt limiting, temporary IP blocking, access log and allowlist.

Custom login URL

Configurable masking of wp-login.php and wp-admin to reduce automated attacks.

Two-factor authentication

TOTP codes compatible with authentication apps and recovery codes by email.

Google reCAPTCHA v2 & v3

Configurable protection for WordPress and WooCommerce forms exposed to bots.

Progressive scanner

Local batch analysis of the WordPress core, plugins, themes, uploads and suspicious files.

SHA-256 hashes

Checks for executable files and integrity using cryptographic fingerprints.

False positive management

Results ranked by confidence, legitimate files recognized and allowed items retained between scans.

Manual quarantine

Explicit isolation of eligible files, without automatic deletion, with possible restoration.

WordPress hardening

Security headers, file editor, XML-RPC, user enumeration and configurable login errors.

Content protection

Local protection of texts and images with settings and exclusions tailored to the site.

WooCommerce monitoring

Gateways, bank accounts, orders, refunds, coupons, webhooks and configuration changes.

Logs & activity

History of security events, logins, blocks and sensitive actions.

Alerts & weekly report

Configurable email notifications and regular summary of important events.

Cloud, license & updates

Synchronization of reports and events, agent monitoring and private HTTPS updates verified by SHA-256.

Monitored zones

Protection tailored to WordPress.

Controls correspond to the actual organization of files, accounts and operations on the platform.

01

wp-admin

Administrator access, users, roles and login attempts.

02

wp-content

Unexpected plugins, themes, uploads and executable files.

03

WordPress core

Options, scheduled tasks, sensitive content and changes.

04

WooCommerce

Order flow, accounts, gateways, webhooks and commercial operations.

Annual license

Enable all protections for your site.

From €59 excl. VAT per site per year.

Cookies

We use cookies necessary for the operation of the site. With your consent, we can also use analytics and personalization cookies. Learn more.

Necessary

Essential for the site and the client area.

Active