Adds secure optimizations to .htaccess file
As of April 2026, UndaSecure is a WordPress secure plugin with 10 active installations and a 0/5 rating0. It has been downloaded 1.4K+ times in total. Requires WordPress 4.0+ and PHP false+. Available on WordPress.org since 2017. Last updated 8 years ago — may have compatibility concerns. Top alternative: BBQ Firewall – Fast & Powerful Firewall….
This plugins adds markers in /.htaccess and /wp-content/uploads/.htaccess to secure against attacks and optimize Apache configurations for SEO propouses.
Sets protection in ROOT/.htaccess for wp-config.php, .htaccess, xmlrpc.php, wp-cron.php.
Sets block author scans in ROOT/.htaccess.
Sets GZIP/DEFLATE in ROOT/.htaccess.
Sets Header add Access-Control-Allow-Origin in ROOT/.htaccess.
Sets ExpiresActive in ROOT/.htaccess.
Sets Header unset Etag in ROOT/.htaccess.
Create or add to /wp-content/uploads/.htaccess protection for files only.
Removes files on each WP update to prevent exposing WP version number (readme.html, wp-config-sample.php, license.txt).
| WordPress | 4.0+ requiredTested up to 4.9.29 |
| PHP | false+ required |
added new banned extensions in uploaded files
Plugin data sourced from WordPress.org. Analysis and metrics by PluginSift.