WPIntell

security-protection

Security-Protection

Protection from login, registration and reset-password brute-force attacks. No captcha.

400
15.6K
4.3
0
14
9

Proof Health

Open evidence

Commercial opportunities need traceable source links before they are treated as build-worthy.

88 / 122 rows with source links

72.1% of this page's analysis has direct source links.

0 build-decision rows missing links

0 rows here require auditable proof before promotion.

34 rows with no attached evidence

0 rows have source counts but still need direct links.

Download Momentum

180 days
54 74 -27.0% 338

Related Opportunities

4 markets

Source Evidence

Open evidence explorer
complaint support · high severity · relevance 1.0
Not compatible with the "zM Ajax Login & Register" plugin

Not compatible with the "zM Ajax Login & Register" plugin: users show security, bugs, compatibility pain that may indicate a product gap.

Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
Proof Blocked card complete access control and account operations Evidence linked to opportunity
Not compatible with the "zM Ajax Login & Register" plugin This plugin blocks an other plugin used for members to connect.
complaint support · high severity · relevance 1.0
login attempts through the login page & auth cookies

login attempts through the login page & auth cookies: users show security, compatibility, performance pain that may indicate a product gap.

Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
Proof Blocked card complete access control and account operations Evidence linked to opportunity
login attempts through the login page & auth cookies Hi, I was looking at plugins to mitigate against brute force login attacks and see your plugin is up-to-date, great!
complaint support · high severity · relevance 1.0
Conflicts with front end login form

Conflicts with front end login form: users show security, bugs, compatibility pain that may indicate a product gap.

Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
Proof Blocked card complete access control and account operations Evidence linked to opportunity
Conflicts with front end login form Hi, I installed this plugin to one of my clients’ site to add more protection several months ago.
complaint support · high severity · relevance 1.0
Extra Code always required at login page since lust update

Extra Code always required at login page since lust update: users show security, bugs, compatibility pain that may indicate a product gap.

Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
Proof Blocked card complete access control and account operations Evidence linked to opportunity
Before the update this field were hidden as described in the documentation.
complaint support · high severity · relevance 1.0
XMLRPC.php attack

XMLRPC.php attack: users show security, compatibility, support pain that may indicate a product gap.

Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
Proof Blocked card complete access control and account operations Evidence linked to opportunity
XMLRPC.php attack Hi would this plugin stop a XMLRPC.php attack ?
complaint support · high severity · relevance 1.0
Bug on reset password

Bug on reset password: users show security, bugs, compatibility pain that may indicate a product gap.

Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
Proof Blocked card complete access control and account operations Evidence linked to opportunity
Bug on reset password Hi, When I tried to reset a password, I enter the email address and I get this error message and I can’t follow the reset process : Security-protection plugin: Reset password error: wrong code; field should be empty; Thanks for your help, Guillaume https://wordpress.org/plugins/security-protection/ Hi, When I tried to reset a password,
complaint support · high severity · relevance 1.0
Does not work with WooCommerce

Does not work with WooCommerce: users show security, bugs, compatibility pain that may indicate a product gap.

Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
Proof Blocked card complete access control and account operations Evidence linked to opportunity
Does not work with WooCommerce Does not work with the login form at checkout-time, just as the hidden fields are not there, even if they actually are.
complaint review · high severity · relevance 0.98
not working at all

not working at all: users show security, compatibility, missing feature pain that may indicate a product gap.

Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
Proof Blocked card complete access control and account operations Evidence linked to opportunity
not working at all attacks continued after installing it… totally useless attacks continued after installing it… totally useless IMHO you don’t understand how plugin works.
complaint review · high severity · relevance 0.96
No apparent change

No apparent change: users show security, performance, support pain that may indicate a product gap.

Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
Proof Blocked card complete access control and account operations Evidence linked to opportunity
This morning, emails from WordFence confirm those sites were hit by successive attempts from a bot network along with the other sites in the network.
mixed support · high severity · relevance 0.95
Login Conflict with Woocommerce 2.9.10

Login Conflict with Woocommerce 2.9.10: users show security, bugs, compatibility pain that may indicate a product gap.

Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
Proof Blocked card complete access control and account operations Evidence linked to opportunity
Login Conflict with Woocommerce 2.9.10 Hello Webvitaly, I like your plugin very much!

Competitor Context

16 shown
WP fail2ban – Advanced Security weak incumbent · intel 81.7 · weakness 73.0
weak incumbent
1 unresolved support thread(s) stale update history bugs compatibility 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
IP Geo Block praise owner · intel 79.0 · weakness 69.6
praise owner
stale update history 38 collected complaint signal(s) bugs support 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
Protection Against DDoS praise owner · intel 70.1 · weakness 57.9
praise owner
stale update history 6 collected complaint signal(s) missing feature support 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
Anti-Malware Security and Brute-Force Firewall praise owner · intel 69.6 · weakness 50.3
praise owner
1 unresolved support thread(s) 6 collected complaint signal(s) performance setup 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
HTTP Auth praise owner · intel 68.7 · weakness 55.0
praise owner
stale update history 5 collected complaint signal(s) compatibility missing feature 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test brute force lockouts, bot/spam defenses, risky access changes, and incident alerts
User Login History praise owner · intel 67.8 · weakness 51.6
praise owner
1 unresolved support thread(s) 13 collected complaint signal(s) bugs missing feature 2 source links Proof Blocked Evidence linked to opportunity
Buyer: agencies, maintenance teams, and client-site operators · Wedge: audit history admin changes, role drift, client handoffs, and unsafe settings exposure
XO Security praise owner · intel 63.3 · weakness 43.5
praise owner
6 collected complaint signal(s) security compatibility 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: monitor maintenance health, updates, cache state, cron jobs, and maintenance exceptions

Repeated Themes

0 shown

No repeated plugin-level themes have been generated yet.

Collected Signals

20 shown from 29 collected
complaint Does not work with WooCommerce support · 2019-12-20T17:37:35+00:00 · high severity · brute force

Does not work with WooCommerce: users show security, bugs, compatibility pain that may indicate a product gap.

Evidence: Does not work with WooCommerce Does not work with the login form at checkout-time, just as the hidden fields are not there, even if they actually are.
security bugs compatibility support trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
complaint Compatibility with s2Member (Pro) login widget support · 2018-01-21T14:26:12+00:00 · medium severity · brute force

Compatibility with s2Member (Pro) login widget: users show compatibility, missing feature, support pain that may indicate a product gap.

Evidence: Compatibility with s2Member (Pro) login widget Hello, Is it possible to correct the plugin to be compatible with the login widget coming with s2Member Pro (you can find s2Member Pro on GitHub to be able to test) ?
compatibility missing feature support reliable trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
complaint Not compatible with the "zM Ajax Login & Register" plugin support · 2015-09-03T23:04:08+00:00 · high severity · brute force

Not compatible with the "zM Ajax Login & Register" plugin: users show security, bugs, compatibility pain that may indicate a product gap.

Evidence: Not compatible with the "zM Ajax Login & Register" plugin This plugin blocks an other plugin used for members to connect.
security bugs compatibility support trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
complaint Extra Code always required at login page since lust update support · 2015-06-11T05:41:16+00:00 · high severity · brute force

Extra Code always required at login page since lust update: users show security, bugs, compatibility pain that may indicate a product gap.

Evidence: Before the update this field were hidden as described in the documentation.
security bugs compatibility migration trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
mixed Login Conflict with Woocommerce 2.9.10 support · 2015-06-01T19:41:51+00:00 · high severity · brute force

Login Conflict with Woocommerce 2.9.10: users show security, bugs, compatibility pain that may indicate a product gap.

Evidence: Login Conflict with Woocommerce 2.9.10 Hello Webvitaly, I like your plugin very much!
security bugs compatibility missing feature trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
complaint not working at all (1 star) review · 2015-05-05T07:15:18+00:00 · high severity · brute force

not working at all: users show security, compatibility, missing feature pain that may indicate a product gap.

Evidence: not working at all attacks continued after installing it… totally useless attacks continued after installing it… totally useless IMHO you don’t understand how plugin works.
security compatibility missing feature support trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
mixed Incompatibility with Sidebar Login support · 2015-01-24T15:31:43+00:00 · high severity · brute force

Incompatibility with Sidebar Login: users show security, compatibility, support pain that may indicate a product gap.

Evidence: Incompatibility with Sidebar Login I am having problems logging into my website ( http://www.principledpolicy.com ) using Sidebar Login when Security-protection is enabled.
security compatibility support trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
complaint Bug on reset password support · 2015-01-23T10:23:22+00:00 · high severity · brute force

Bug on reset password: users show security, bugs, compatibility pain that may indicate a product gap.

Evidence: Bug on reset password Hi, When I tried to reset a password, I enter the email address and I get this error message and I can’t follow the reset process : Security-protection plugin: Reset password error: wrong code; field should be empty; Thanks for your help, Guillaume https://wordpress.org/plugins/security-protection/ Hi, When I tried to reset a password,
security bugs compatibility support trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
complaint Expand to Work with BuddyPress Registration Form support · 2015-01-22T12:16:32+00:00 · high severity · brute force

Expand to Work with BuddyPress Registration Form: users show security pain that may indicate a product gap.

Evidence: Expand to Work with BuddyPress Registration Form Hello Vitaly, thanks for great plugin.
security reliable quality form trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
mixed Different URL Login page support · 2015-01-21T15:12:56+00:00 · high severity · brute force

Different URL Login page: users show security, compatibility pain that may indicate a product gap.

Evidence: Different URL Login page Hi, I don’t use wordpress default login url such as login.php or wp-admin… Is that a problem ?
security compatibility reliable performance trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
praise Great plugin (5 stars) review · 2014-12-31T11:49:05+00:00 · medium severity · brute force

Great plugin: users praise easy, quality, which suggests what competitors already do well.

Evidence: Great plugin Very simple idea well executed.
easy quality trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
complaint New brute force attacks support · 2014-12-07T15:10:45+00:00 · high severity · brute force

New brute force attacks: users show security, setup pain that may indicate a product gap.

Evidence: They went away instantly after installing Security-protection, but after some time, the scammers have found a way to recognize it perhaps.
security setup value trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
complaint XMLRPC.php attack support · 2014-12-04T12:31:14+00:00 · high severity · brute force

XMLRPC.php attack: users show security, compatibility, support pain that may indicate a product gap.

Evidence: XMLRPC.php attack Hi would this plugin stop a XMLRPC.php attack ?
security compatibility support setup trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
praise Does simply and precisely what it should… (5 stars) review · 2014-11-06T22:19:35+00:00 · high severity · brute force

Does simply and precisely what it should…: users show security pain that may indicate a product gap.

Evidence: Does simply and precisely what it should… I have a profound love-hate relationship with most “monsters” security plugins a la wordfence & co… and this plugin is exactly the opposite : it does ONE thing but does it WELL !!!
security quality trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
question captcha in login widget support · 2014-10-04T16:32:44+00:00 · high severity · brute force

captcha in login widget: users show security, bugs, compatibility pain that may indicate a product gap.

Evidence: captcha in login widget Hi dear, you say that there is no captcha but when I activate your plugin on my login widget appear a code that need to be enter by the user.
security bugs compatibility missing feature trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
praise Great plugin, best one out there. (5 stars) review · 2014-09-19T00:25:10+00:00 · high severity · brute force

Great plugin, best one out there.: users show security, setup pain that may indicate a product gap.

Evidence: Great plugin, best one out there.
security setup quality trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
complaint Conflicts with front end login form support · 2014-08-04T20:46:59+00:00 · high severity · brute force

Conflicts with front end login form: users show security, bugs, compatibility pain that may indicate a product gap.

Evidence: Conflicts with front end login form Hi, I installed this plugin to one of my clients’ site to add more protection several months ago.
security bugs compatibility missing feature trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
praise Ingenious concept (5 stars) review · 2014-07-23T21:34:03+00:00 · high severity · brute force

Ingenious concept: users show security pain that may indicate a product gap.

Evidence: (I recommend Anti-Spam too, it works by the same principle) This plugin fights against brute force attacks using a very inteligent solution.
security reliable spam trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
praise Hacking attempt stopped after implementing this plugin (5 stars) review · 2014-07-20T06:57:59+00:00 · high severity · brute force

Hacking attempt stopped after implementing this plugin: users show security, setup pain that may indicate a product gap.

Evidence: Hacking attempt stopped after implementing this plugin I cannot tell how happy I am!
security setup quality login trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure
complaint login attempts through the login page & auth cookies support · 2014-07-12T20:00:36+00:00 · high severity · brute force

login attempts through the login page & auth cookies: users show security, compatibility, performance pain that may indicate a product gap.

Evidence: login attempts through the login page & auth cookies Hi, I was looking at plugins to mitigate against brute force login attacks and see your plugin is up-to-date, great!
security compatibility performance support trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: membership site owners, agencies, and operations teams · Wedge: test registration roles, protected content, SSO/login handoffs, and private-data exposure