A simple Web Application Firewall for WordPress.
As of April 2026, What's going on is a WordPress WAF plugin with 0 active installations and a 0/5 rating0. It has been downloaded 1.4K+ times in total. Requires WordPress 5.0+ and PHP 7.4+. Available on WordPress.org since 2020. Last updated 3 years ago — may have compatibility concerns. Top alternative: CloudSecure WP Security.
A very simple firewall for WordPress that allows you to see all real requests to your WordPress and protect you from Internet attacks. It’s a WAF, a Web Application Firewall that is installed in front of WordPress. It’s installed in the server with the plugin, and it checks requests from the web browsers, bots or webcrawlers to your WordPress. It executes the WAF codes before every request to PHP files of WordPress, so it also works before every request to the WordPress cache.
Features:
| WordPress | 5.0+ requiredTested up to 6.0.11 |
| PHP | 7.4+ required |
Plugin data sourced from WordPress.org. Analysis and metrics by PluginSift.