Title: Kerry's Replies | WordPress.org

---

# Kerry

  [  ](https://wordpress.org/support/users/kboyte/)

 *   [Profile](https://wordpress.org/support/users/kboyte/)
 *   [Topics Started](https://wordpress.org/support/users/kboyte/topics/)
 *   [Replies Created](https://wordpress.org/support/users/kboyte/replies/)
 *   [Reviews Written](https://wordpress.org/support/users/kboyte/reviews/)
 *   [Topics Replied To](https://wordpress.org/support/users/kboyte/replied-to/)
 *   [Engagements](https://wordpress.org/support/users/kboyte/engagements/)
 *   [Favorites](https://wordpress.org/support/users/kboyte/favorites/)

 Search replies:

## Forum Replies Created

Viewing 15 replies - 1 through 15 (of 53 total)

1 [2](https://wordpress.org/support/users/kboyte/replies/page/2/?output_format=md)
[3](https://wordpress.org/support/users/kboyte/replies/page/3/?output_format=md)
[4](https://wordpress.org/support/users/kboyte/replies/page/4/?output_format=md)
[→](https://wordpress.org/support/users/kboyte/replies/page/2/?output_format=md)

 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] Question about the Wordfence Security Plugin](https://wordpress.org/support/topic/question-about-the-wordfence-security-plugin/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [5 years, 4 months ago](https://wordpress.org/support/topic/question-about-the-wordfence-security-plugin/#post-14192508)
 * Hi Lea,
 * Wordfence provides a Data Processing Agreement found at the link below. This 
   agreement relies on Standard Contractual Clauses to lawfully transfer EU PII 
   between the EU and the United States. You can sign it per the instructions on
   the page. This agreement applies to both the free and Premium versions of Wordfence.
 * [https://www.wordfence.com/help/general-data-protection-regulation/](https://www.wordfence.com/help/general-data-protection-regulation/)
 * -Kerry
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] GDPR Data Processing](https://wordpress.org/support/topic/gdpr-data-processing/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [5 years, 8 months ago](https://wordpress.org/support/topic/gdpr-data-processing/#post-13660023)
 * Hi Emma,
    Unfortunately our lawyers do not allow us to provide advice that may
   be construed as legal advice. I can provide this link which may help you understand
   your legal responsibilities under GDPR: [https://gdpr.eu/what-is-data-processing-agreement/](https://gdpr.eu/what-is-data-processing-agreement/)
 * Kind regards, Kerry
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] Switching off IP-Transmission possible?](https://wordpress.org/support/topic/switching-off-ip-transmission-possible/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [5 years, 11 months ago](https://wordpress.org/support/topic/switching-off-ip-transmission-possible/#post-13277320)
 * Hello,
 * We provide a Data Processing Agreement which relies on Standard Contractual Clauses
   to transfer EU PII to Wordfence servers in the US. We no longer rely on the Privacy
   Shield framework. Standard Contractual Clauses are still recognized as a lawful
   means to transfer EU PII data which by signing, allows our customers to continue
   to be fully protected using the Wordfence plugin. You can find it on this page
   about halfway down: [https://www.wordfence.com/help/general-data-protection-regulation/](https://www.wordfence.com/help/general-data-protection-regulation/)
 * -Kerry
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] GDPR: Cookies Storape periode?](https://wordpress.org/support/topic/gdpr-cookies-storape-periode/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [7 years, 10 months ago](https://wordpress.org/support/topic/gdpr-cookies-storape-periode/#post-10681923)
 * Hi [@tdgi](https://wordpress.org/support/users/tdgi/)
 * All cookies are persistent with lifetimes as follows:
 * wfwaf-authcookie-(hash) – 12 hours
 * wf_loginalerted_(hash) – 1 year
 * wfCBLBypass – 1 year
 * -Kerry
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] GDPR: Cookies Storape periode?](https://wordpress.org/support/topic/gdpr-cookies-storape-periode/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [7 years, 10 months ago](https://wordpress.org/support/topic/gdpr-cookies-storape-periode/#post-10672253)
 * Hi [@tdgi](https://wordpress.org/support/users/tdgi/),
    The storage period for
   those three cookies is between 12 hours and one year. -Kerry
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] Opt out of sending data to US from EU](https://wordpress.org/support/topic/opt-out-of-sending-data-to-us-from-eu/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [7 years, 11 months ago](https://wordpress.org/support/topic/opt-out-of-sending-data-to-us-from-eu/#post-10604540)
 * Hi [@macnscr](https://wordpress.org/support/users/macnscr/),
 * You can disable sending visitor data collected from the site to the Wordfence
   servers in the US by turning off “Participate in the Real-Time Wordfence Security
   Network” on the Options page.
 * If you turn this off, you will cripple the software to only provide protection
   that can be run entirely locally. Anything that protects based on IP reputation
   which is the vast majority of the blocks we see, would no longer work and open
   up your site to much more unnecessary risk.
 * We have provided a lawful, GDPR-compliant method to transfer data from the EU
   to our servers in the US via the Data Processing Agreement we have setup ([https://www.wordfence.com/help/general-data-protection-regulation/#data-processing-agreement](https://www.wordfence.com/help/general-data-protection-regulation/#data-processing-agreement)).
   This is the process you can use until we have completed getting setup with Privacy
   Shield. The intent of GDPR isn’t to put sites at greater risk for attack attempts
   which is why many companies use a Data Processing Agreement and/or Privacy Shield
   to continue to allow security products to protect EU sites and transfer EU data
   lawfully.
    -Kerry
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] Exporting/erasing personal data stored by WordFence](https://wordpress.org/support/topic/exporting-erasing-personal-data-stored-by-wordfence/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [7 years, 11 months ago](https://wordpress.org/support/topic/exporting-erasing-personal-data-stored-by-wordfence/#post-10601459)
 * Hi [@levdesign](https://wordpress.org/support/users/levdesign/),
 * Currently our process to provide data controls is to contact us at privacy at
   defiant.com. We have a process in place to manage the requests per GDPR requirements.
   We haven’t looked into offering tools such as the ones provided by WordPress 
   for exporting and erasing personal data. Thank you for bringing this to our attention
   so we may consider it.
    -Kerry
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] Blocked IPs / GDPR](https://wordpress.org/support/topic/blocked-ips-gdpr/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [8 years ago](https://wordpress.org/support/topic/blocked-ips-gdpr/#post-10510413)
 * Hi [@wpblogwriter](https://wordpress.org/support/users/wpblogwriter/),
 * Blocked IP stats shown on the dashboard are collected from Live Traffic. How 
   long they are retained is determined by the Live Traffic setting in your Options(
   1+ days). You can have them automatically removed daily if you set it to one 
   day.
    IPs sent to Wordfence are kept for 90 days unless they are still behaving
   maliciously. They are removed once they stop being malicious or 90 days, whichever
   is later. This data is not anonymized. Kerry
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] Data Processing Agreement issue](https://wordpress.org/support/topic/data-processing-agreement-issue/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [8 years, 1 month ago](https://wordpress.org/support/topic/data-processing-agreement-issue/#post-10426526)
 * Hi Richard,
 * Could you explain the inconsistency you see? Looking at Article 94 of the GDPR,
   this seems correct: [https://gdpr-info.eu/art-94-gdpr/](https://gdpr-info.eu/art-94-gdpr/)
 * -Kerry
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] Don’t want lo log IP of successful logins](https://wordpress.org/support/topic/dont-want-lo-log-ip-of-successful-logins/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [8 years, 1 month ago](https://wordpress.org/support/topic/dont-want-lo-log-ip-of-successful-logins/#post-10397060)
 * Hi [@michilinz](https://wordpress.org/support/users/michilinz/),
 * Successful logins can be important forensic evidence in a situation where a site
   was compromised, since an attackers login would then also be successful. Without
   this opportunity to audit the previous logins, you may not be able to figure 
   out which one of your admins accounts is compromised.
    If you still don’t want
   to log this data, unfortunately we don’t have the ability to automatically stop
   this logging but you could write a script that truncates the wp_wfLogins table.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] Wordfence + DSGVO](https://wordpress.org/support/topic/wordfence-dsgvo/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [8 years, 1 month ago](https://wordpress.org/support/topic/wordfence-dsgvo/#post-10397011)
 * Hi [@herby07](https://wordpress.org/support/users/herby07/),
 * If you have Live Traffic enabled in order to manually block suspicious or malicious
   IPs, and fall under the DSGVO regulations, your site will be collecting personal
   data from your customers and should be informed of this collection. We have added
   an option to delete data in Live Traffic with a setting of 1 day or more so you
   can easily delete data you no longer need.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] Missing font files](https://wordpress.org/support/topic/missing-font-files-2/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [8 years, 1 month ago](https://wordpress.org/support/topic/missing-font-files-2/#post-10392709)
 * Hi Greg,
    I heard back on this issue. The filenames for those fonts should be
   there. We noticed there’s also a jetpack.woff getting a 404 which is not one 
   of our files. We think there might be something causing a problem with the full
   path to the files. You should be able to see what the full path is by hovering
   over the filename in the list that shows the 404s or by right-clicking and choosing“
   Copy URL”. In our css/ directory, the css files use a relative path like url(../
   fonts/filename.woff). Our best guess right now is that the browser version is
   somehow misinterpreting the full path or maybe another plugin is combining the
   css files without fixing relative paths.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] Missing font files](https://wordpress.org/support/topic/missing-font-files-2/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [8 years, 1 month ago](https://wordpress.org/support/topic/missing-font-files-2/#post-10376662)
 * Thanks Greg for all that info. The dev I need to talk to is out until Monday 
   so it may take me a few days to get an answer for you but I’ll post here again
   when I get an update.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] Scan says Jetpack files are problematic](https://wordpress.org/support/topic/scan-says-jetpack-files-are-problematic/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [8 years, 1 month ago](https://wordpress.org/support/topic/scan-says-jetpack-files-are-problematic/#post-10375729)
 * [@dangillmor](https://wordpress.org/support/users/dangillmor/), The problem has
   been fixed. If you rescan, you shouldn’t see those issues reported anymore.
 * [@oskosk](https://wordpress.org/support/users/oskosk/), Thanks for the offer 
   to help, much appreciated! The scan for file changes checks files against a copy
   of the WordPress.org repository. When it does this check, it checks against a
   specific version number. In this case, a mismatch happened there. We have fixed
   this by forcing a refresh on our data. We will also continue to work on this 
   to prevent it from happening again but believe it’s an issue on our side that
   caused it.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Wordfence Security - Firewall, Malware Scan, and Login Security] Missing font files](https://wordpress.org/support/topic/missing-font-files-2/)
 *  [Kerry](https://wordpress.org/support/users/kboyte/)
 * (@kboyte)
 * [8 years, 1 month ago](https://wordpress.org/support/topic/missing-font-files-2/#post-10372758)
 * We are aware they don’t work in Internet Explorer but should default to a font
   that works. Could you tell me which version of IE you are using or other browser
   where it’s not working so I can try to reproduce the problem? If you are able
   to respond with a screenshot (any sensitive data removed) that shows the problem
   would be very helpful too.
 * -Kerry

Viewing 15 replies - 1 through 15 (of 53 total)

1 [2](https://wordpress.org/support/users/kboyte/replies/page/2/?output_format=md)
[3](https://wordpress.org/support/users/kboyte/replies/page/3/?output_format=md)
[4](https://wordpress.org/support/users/kboyte/replies/page/4/?output_format=md)
[→](https://wordpress.org/support/users/kboyte/replies/page/2/?output_format=md)