Title: DominoGuard Security
Author: Digital Web Tutor
Published: <strong>May 9, 2026</strong>
Last modified: May 9, 2026

---

Search plugins

![](https://ps.w.org/dominoguard-security/assets/banner-772x250.png?rev=3527364)

![](https://ps.w.org/dominoguard-security/assets/icon-256x256.png?rev=3527364)

# DominoGuard Security

 By [Digital Web Tutor](https://profiles.wordpress.org/digitalwebtutor/)

[Download](https://downloads.wordpress.org/plugin/dominoguard-security.1.0.0.zip)

 * [Details](https://wordpress.org/plugins/dominoguard-security/#description)
 * [Reviews](https://wordpress.org/plugins/dominoguard-security/#reviews)
 *  [Installation](https://wordpress.org/plugins/dominoguard-security/#installation)
 * [Development](https://wordpress.org/plugins/dominoguard-security/#developers)

 [Support](https://wordpress.org/support/plugin/dominoguard-security/)

## Description

**DominoGuard** is a focused, minimalistic security solution for WordPress. Designed
to be fast and lightweight, it provides the essential security features every website
needs with a clean configuration.

#### Key Features

 * **Limit Login Attempts**: Automatically block IPs for 15 minutes after 5 continuous
   failed login attempts, keeping brute-force attacks at bay.
 * **Email Two-Factor Authentication (2FA)**: Add an extra layer of security for
   Administrators. When enabled, logging in requires a 6-digit code sent to the 
   admin’s email address.
 * **Brute Force Protection**: Easily disable XML-RPC, a common vector for brute
   force and pingback attacks.
 * **Block User Enumeration**: Prevent attackers from discovering your administrator
   username by blocking `/?author=N` query scans.
 * **Basic Firewall**: A lightweight WAF that silently blocks simple directory traversal
   attempts (`../`) and basic malicious query strings commonly found in automated
   SQL injections.

#### Why DominoGuard?

Many security plugins suffer from excessive features that can impact performance.
DominoGuard focuses on delivering efficient performance by utilizing standard WordPress
functions, keeping your site secure with minimal resource usage.

## Installation

 1. Upload the `dominoguard-security` directory to your `/wp-content/plugins/` directory,
    or install it directly via the WordPress Plugins menu.
 2. Activate the plugin through the ‘Plugins’ menu in WordPress.
 3. Navigate to **Settings > DominoGuard** in the admin dashboard.
 4. Toggle the security features you wish to enable and click “Save Settings”.

## FAQ

### How does the Email 2FA work?

When “Enable Email 2FA” is active, Administrators will be prompted to enter a 2FA
code during login. If the password is correct, the plugin sends a secure 6-digit
code to the administrator’s email. This code must be entered into the “2FA Code”
field on the login screen, alongside the username and password, to successfully 
log in.

### Will DominoGuard slow down my website?

No. DominoGuard is built with a minimalist philosophy. It runs efficient code with
minimal impact on your website performance.

### Do I need to configure the Firewall?

No configuration is needed. When enabled, it quietly blocks some explicit malicious
patterns in URLs before WordPress even loads fully, keeping you safe.

## Reviews

There are no reviews for this plugin.

## Contributors & Developers

“DominoGuard Security” is open source software. The following people have contributed
to this plugin.

Contributors

 *   [ Digital Web Tutor ](https://profiles.wordpress.org/digitalwebtutor/)

[Translate “DominoGuard Security” into your language.](https://translate.wordpress.org/projects/wp-plugins/dominoguard-security)

### Interested in development?

[Browse the code](https://plugins.trac.wordpress.org/browser/dominoguard-security/),
check out the [SVN repository](https://plugins.svn.wordpress.org/dominoguard-security/),
or subscribe to the [development log](https://plugins.trac.wordpress.org/log/dominoguard-security/)
by [RSS](https://plugins.trac.wordpress.org/log/dominoguard-security/?limit=100&mode=stop_on_copy&format=rss).

## Changelog

#### 1.0.0

 * Initial Release.

## Meta

 *  Version **1.0.0**
 *  Last updated **2 days ago**
 *  Active installations **Fewer than 10**
 *  WordPress version ** 5.8 or higher **
 *  Tested up to **6.9.4**
 *  PHP version ** 7.2 or higher **
 * Tags
 * [2FA](https://wordpress.org/plugins/tags/2fa/)[firewall](https://wordpress.org/plugins/tags/firewall/)
   [limit login attempts](https://wordpress.org/plugins/tags/limit-login-attempts/)
   [security](https://wordpress.org/plugins/tags/security/)[two factor authentication](https://wordpress.org/plugins/tags/two-factor-authentication/)
 *  [Advanced View](https://wordpress.org/plugins/dominoguard-security/advanced/)

## Ratings

No reviews have been submitted yet.

[Your review](https://wordpress.org/support/plugin/dominoguard-security/reviews/#new-post)

[See all reviews](https://wordpress.org/support/plugin/dominoguard-security/reviews/)

## Contributors

 *   [ Digital Web Tutor ](https://profiles.wordpress.org/digitalwebtutor/)

## Support

Got something to say? Need help?

 [View support forum](https://wordpress.org/support/plugin/dominoguard-security/)