NETSENSAI Shield

Leírás

NETSENSAI Shield offers a range of security features, including:

  • Changing the login URL to reduce brute force attack risks.
  • Disabling the REST API (WP API JSON) for non-logged-in users.
  • Disabling XML-RPC to prevent unauthorized access.
  • Disabling the WordPress file editor to avoid accidental or malicious changes.
  • Disabling Application Passwords to block unauthorized API access.
  • Applying advanced HTTP security headers (e.g., HSTS, X-Frame-Options, Content-Security-Policy).

The free version provides both core and advanced Level 3 security functionalities. A PRO version offers extended support, additional features and automatic protection enhancements.

Telepítés

  1. Download NETSENSAI Shield from the WordPress.org repository or manually upload the plugin files to the /wp-content/plugins/netsensai-shield/ directory.
  2. Activate the plugin from the WordPress Admin Dashboard under „Plugins”.
  3. Navigate to Settings > Secure Options and configure the plugin as needed.

GYIK

How do I change the WordPress login URL?

Go to Settings > Secure Options and enter your preferred login URL in the „Change Login URL” field.

How does disabling WP API JSON improve security?

It reduces exposure of your site’s data via the REST API for non-logged-in users.

Why disable XML-RPC?

Disabling XML-RPC helps protect against brute force attacks targeting this protocol.

What is the effect of disabling the file editor?

It prevents code modifications via the dashboard, reducing the risk of malicious changes.

What headers are included in Level 3 security?

The plugin can apply the following headers:
* Strict-Transport-Security (HSTS)
* X-Frame-Options
* X-Content-Type-Options
* Content-Security-Policy (CSP)
* Referrer-Policy
* Permissions-Policy

Vélemények

2025.05.12.
Why I Chose Netsensai Shield. I’ve tested popular WordPress security plugins: Wordfence, and WP Solid Security (formerly iThemes Security). While each brings solid protection to the table, Netsensai Shield stood out—especially when it comes to modern web security standards. Achieved an A+ rating on SecurityHeaders.com right out of the box—no extra configuration needed. That’s a huge win for privacy-conscious and compliance-driven sites. Lightweight and fast—minimal impact on server resources. Clean, beginner-friendly interface. If you’re looking for a fast, no-fuss plugin that delivers secure headers and solid protection, Netsensai Shield is a fantastic choice—especially for small to medium-sized sites. Netsensai hits a sweet spot between performance, ease of use, and strong out-of-the-box security. PL: Jeśli szukasz szybkiej, bezproblemowej wtyczki, która zapewnia bezpieczeństwo przed najpopularniejszymi atakami i solidną ochronę dla Twojego sklepu lub strony internetowej na Wordpressie, Netsensai Shield to doskonały wybór – szczególnie dla małych i średnich stron ale nie tylko. Netsensai trafia w idealny kompromis między wydajnością, łatwością obsługi a skutecznym zabezpieczeniem już od momentu instalacji. Zero konfiguracji, tylko włączasz opcje. Dodatkowo cena bardzo atrakcyjna. Polecam
2025.04.23.
It’s a great plugin! Very easy to install and effective in its work. Got it for all my sites. I am also impressed by the support team. Very efficient and client-oriented. When approached, responded immediately in a very helpful and friendly manner.
3 (az összes) vélemény olvasása

Közreműködők és fejlesztők

“NETSENSAI Shield” egy nyílt forráskódú szoftver. A bővítményhez a következő személyek járultak hozzá:

Közreműködők

“NETSENSAI Shield” 1 nyelvre lett lefordítva. Köszönet a fordítóknak az áldozatos munkájukért!

“NETSENSAI Shield” fordítása a saját nyelvünkre.

Érdekeltek vagyunk a fejlesztésben?

Browse the code, check out the SVN repository, or subscribe to the development log by RSS.

Változási napló

1.3

  • Restored Level 3: Advanced Security options to the free version.
  • Popup modal now shows only once when a feature is enabled (no repeat on Save).
  • Fully localized modal text – all content is now translatable (textdomain ready).
  • Fixed links to securityheaders.com and Mozilla Observatory.
  • Removed error_log() calls flagged by Plugin Check.
  • Minor UI & spacing fixes in popup design.
  • Updated Tested up to to 6.8 and set Stable tag to 1.3.

1.2

  • Moved Level 3 features to the PRO version for better support and performance.
  • Added a promotional message for the PRO version.
  • Simplified the free version for clarity and speed.

1.1

  • Added option to disable Application Passwords.
  • Enhanced UI with tooltips and simplified options.
  • Improved security headers implementation.
  • Fixed issues with login URL redirection and WP API JSON disable functionality.

1.0

  • Initial release featuring options to change the login URL, disable WP API JSON, XML-RPC, the file editor, and apply security headers.