{"id":357181,"date":"2026-09-20T06:07:48","date_gmt":"2026-09-20T06:07:48","guid":{"rendered":"https:\/\/wordpress.org\/plugins\/sure-defense\/"},"modified":"2026-09-20T06:07:14","modified_gmt":"2026-09-20T06:07:14","slug":"trufend","status":"publish","type":"plugin","link":"https:\/\/wordpress.org\/plugins\/trufend\/","author":18270222,"comment_status":"closed","ping_status":"closed","template":"","meta":{"version":"1.0.0","stable_tag":"1.0.0","tested":"7.1.2","requires":"6.2","requires_php":"7.4","requires_plugins":null,"header_name":"Trufend","header_author":"shewa","header_description":"Comprehensive WordPress security hardening \u2014 brute force protection, login security, security headers, and more.","assets_banners_color":"0b283a","last_updated":"2026-09-20 06:07:14","external_support_url":"","external_repository_url":"","donate_link":"","header_plugin_uri":"","header_author_uri":"https:\/\/profiles.wordpress.org\/shewa","rating":0,"author_block_rating":0,"active_installs":0,"downloads":60,"num_ratings":0,"support_threads":0,"support_threads_resolved":0,"author_block_count":0,"sections":["description","installation","faq","changelog"],"tags":{"1.0.0":{"tag":"1.0.0","author":"shewa","date":"2026-09-20 06:07:14","revision":3703912}},"upgrade_notice":[],"ratings":[],"assets_icons":{"icon-128x128.png":{"filename":"icon-128x128.png","revision":3703916,"resolution":"128x128","location":"assets","locale":"","width":128,"height":128},"icon-256x256.png":{"filename":"icon-256x256.png","revision":3703916,"resolution":"256x256","location":"assets","locale":"","width":256,"height":256},"icon.svg":{"filename":"icon.svg","revision":3703916,"resolution":false,"location":"assets","locale":false}},"assets_banners":{"banner-1544x500.png":{"filename":"banner-1544x500.png","revision":3703916,"resolution":"1544x500","location":"assets","locale":"","width":1544,"height":500},"banner-772x250.png":{"filename":"banner-772x250.png","revision":3703916,"resolution":"772x250","location":"assets","locale":"","width":772,"height":250}},"assets_blueprints":{},"all_blocks":[],"tagged_versions":["1.0.0"],"block_files":[],"assets_screenshots":{"screenshot-1.png":{"filename":"screenshot-1.png","revision":3703920,"resolution":"1","location":"assets","locale":"","width":2880,"height":1398},"screenshot-2.png":{"filename":"screenshot-2.png","revision":3703916,"resolution":"2","location":"assets","locale":"","width":2880,"height":1398},"screenshot-3.png":{"filename":"screenshot-3.png","revision":3703916,"resolution":"3","location":"assets","locale":"","width":2880,"height":1398},"screenshot-4.png":{"filename":"screenshot-4.png","revision":3703916,"resolution":"4","location":"assets","locale":"","width":2880,"height":1398},"screenshot-5.png":{"filename":"screenshot-5.png","revision":3703916,"resolution":"5","location":"assets","locale":"","width":2880,"height":1398},"screenshot-6.png":{"filename":"screenshot-6.png","revision":3703916,"resolution":"6","location":"assets","locale":"","width":2880,"height":1398}},"screenshots":{"1":"Security dashboard with module overview","2":"Module settings with enable toggle and options","3":"File permissions browser","4":"Malware scanner results","5":"Backup manager"}},"plugin_section":[],"plugin_tags":[151,1174,602,1184,600],"plugin_category":[38,54,59],"plugin_contributors":[281655],"plugin_business_model":[],"class_list":["post-357181","plugin","type-plugin","status-publish","hentry","plugin_tags-backup","plugin_tags-firewall","plugin_tags-login","plugin_tags-malware","plugin_tags-security","plugin_category-authentication","plugin_category-security-and-spam-protection","plugin_category-utilities-and-tools","plugin_contributors-shewa","plugin_committers-shewa"],"banners":{"banner":"https:\/\/ps.w.org\/trufend\/assets\/banner-772x250.png?rev=3703916","banner_2x":"https:\/\/ps.w.org\/trufend\/assets\/banner-1544x500.png?rev=3703916","banner_rtl":false,"banner_2x_rtl":false},"icons":{"svg":"https:\/\/ps.w.org\/trufend\/assets\/icon.svg?rev=3703916","icon":"https:\/\/ps.w.org\/trufend\/assets\/icon.svg?rev=3703916","icon_2x":false,"generated":false},"screenshots":[{"src":"https:\/\/ps.w.org\/trufend\/assets\/screenshot-1.png?rev=3703920","caption":"Security dashboard with module overview"},{"src":"https:\/\/ps.w.org\/trufend\/assets\/screenshot-2.png?rev=3703916","caption":"Module settings with enable toggle and options"},{"src":"https:\/\/ps.w.org\/trufend\/assets\/screenshot-3.png?rev=3703916","caption":"File permissions browser"},{"src":"https:\/\/ps.w.org\/trufend\/assets\/screenshot-4.png?rev=3703916","caption":"Malware scanner results"},{"src":"https:\/\/ps.w.org\/trufend\/assets\/screenshot-5.png?rev=3703916","caption":"Backup manager"},{"src":"https:\/\/ps.w.org\/trufend\/assets\/screenshot-6.png?rev=3703916","caption":""}],"raw_content":"<!--section=description-->\n<p>Trufend helps you protect a WordPress site with practical security controls that stay out of your way until you need them. Enable only the modules you want, review activity from a single dashboard, and keep common attack paths closed.<\/p>\n\n<h4>Free features<\/h4>\n\n<ul>\n<li><strong>IP Lock<\/strong> \u2014 Limit failed login attempts, block abusive IP addresses, and unblock them from the settings page.<\/li>\n<li><strong>Login Security<\/strong> \u2014 Hide login hints, optional custom login URL, and email-based two-factor authentication.<\/li>\n<li><strong>Admin User Protection<\/strong> \u2014 Enforce stronger administrator passwords and surface important account changes.<\/li>\n<li><strong>Security Headers<\/strong> \u2014 Send common HTTP security headers such as <code>X-Frame-Options<\/code> and <code>Referrer-Policy<\/code>.<\/li>\n<li><strong>XML-RPC Protection<\/strong> \u2014 Disable XML-RPC when it is not needed.<\/li>\n<li><strong>User Enumeration Protection<\/strong> \u2014 Block common author-scanning techniques.<\/li>\n<li><strong>REST API Protection<\/strong> \u2014 Restrict anonymous REST API access when configured.<\/li>\n<li><strong>Comment Protection<\/strong> \u2014 Add a lightweight honeypot to comment forms.<\/li>\n<li><strong>User Activity Log<\/strong> \u2014 Review recent security-related activity in the dashboard.<\/li>\n<li><strong>Malware Scanner<\/strong> \u2014 Scan individual files for suspicious PHP patterns.<\/li>\n<li><strong>Backups<\/strong> \u2014 Create manual database or site file backups in the background.<\/li>\n<li><strong>File Permissions<\/strong> \u2014 Browse file and folder permissions from the WordPress admin.<\/li>\n<\/ul>\n\n<h4>External libraries<\/h4>\n\n<p>Trufend bundles the following library with its distribution:<\/p>\n\n<ul>\n<li><a href=\"https:\/\/packagist.org\/packages\/shewa\/wp-job-queue\">shewa\/wp-job-queue<\/a> \u2014 GPL-2.0-or-later \u2014 Background job processing for scans and backups.<\/li>\n<\/ul>\n\n<!--section=installation-->\n<ol>\n<li>Upload the plugin files to <code>\/wp-content\/plugins\/trufend<\/code>, or install the plugin through the WordPress Plugins screen.<\/li>\n<li>Activate the plugin through the <strong>Plugins<\/strong> screen in WordPress.<\/li>\n<li>Open <strong>Trufend<\/strong> in the admin menu to review the dashboard and enable the modules you need.<\/li>\n<\/ol>\n\n<p>If you install from source, run <code>composer install --no-dev<\/code> in the plugin directory before activation so bundled dependencies are available.<\/p>\n\n<!--section=faq-->\n<dl>\n<dt id=\"does%20this%20plugin%20phone%20home%20or%20collect%20analytics%3F\"><h3>Does this plugin phone home or collect analytics?<\/h3><\/dt>\n<dd><p>No. Trufend does not send site data to external services by default. Optional Pro upgrade links can be changed with the <code>trufend_pro_upgrade_url<\/code> filter.<\/p><\/dd>\n<dt id=\"will%20uninstalling%20remove%20my%20data%3F\"><h3>Will uninstalling remove my data?<\/h3><\/dt>\n<dd><p>Yes. When you delete the plugin, Trufend removes its database tables, settings, scheduled events, and stored backup archives by default. Use the <code>trufend_uninstall_delete_backups<\/code> filter if you want to keep backup files.<\/p><\/dd>\n<dt id=\"does%20the%20plugin%20modify%20wp-config.php%3F\"><h3>Does the plugin modify wp-config.php?<\/h3><\/dt>\n<dd><p>Only when Pro is active and you enable the file editor protection toggle. Trufend adds a managed <code>DISALLOW_FILE_EDIT<\/code> constant and removes it on uninstall when possible.<\/p><\/dd>\n<dt id=\"can%20i%20use%20this%20on%20multisite%3F\"><h3>Can I use this on multisite?<\/h3><\/dt>\n<dd><p>Yes. When network-activated, settings can be managed network-wide and per-site tables are cleaned up on uninstall.<\/p><\/dd>\n\n<\/dl>\n\n<!--section=changelog-->\n<h4>1.0.0<\/h4>\n\n<ul>\n<li>Initial release with core security modules.<\/li>\n<\/ul>","raw_excerpt":"Harden WordPress with brute-force protection, login security, security headers, malware scanning, backups, and more.","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin\/357181","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin"}],"about":[{"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/types\/plugin"}],"replies":[{"embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/comments?post=357181"}],"author":[{"embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wporg\/v1\/users\/shewa"}],"wp:attachment":[{"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/media?parent=357181"}],"wp:term":[{"taxonomy":"plugin_section","embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_section?post=357181"},{"taxonomy":"plugin_tags","embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_tags?post=357181"},{"taxonomy":"plugin_category","embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_category?post=357181"},{"taxonomy":"plugin_contributors","embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_contributors?post=357181"},{"taxonomy":"plugin_business_model","embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_business_model?post=357181"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}