
Our WordPress Plugins
Although we prefer to hand code our websites that is certainly not because we don't know about WordPress, it's because we know so much. And we share our expertise through our security plugins.
Security of your website is our priority so we build and share simple WordPress Security Plugins.
Not only do we build our own plugins, which protect our WordPress sites, but we share them and we work on a different approach to most people. Rather than 1 huge fits all sizes plugin we prefer highly targetted, very specific, lightweight tools that do exactly what they promise.
You wouldn't use the same type of lock throughout your home to secure everything - your front door, windows, bike and shed. Each has a lock designed for the implementation that has no extra bloat and does what you want it to do. And that' our methodology for our plugins - minimum weight, maximum punch.
Janric Simple Attack Monitor
Janric Simple Attack Monitor is a lightweight plugin to disable XML-RPC, restrict the REST API, and hide the WordPress version.
One of my most useful free plugins is the Janric Simple Attack Monitor. It sits quietly in the background of your WordPress site and logs every suspicious attempt against it — brute force login attacks, SQL injection, XML-RPC abuse, user enumeration, path scanning and more. It actually started 'by chance' - it was an ideal of 'is this possible' that developed into quite a large and very useful plugin. Within hours of testing it I saw my test site, which was supposed to be private, was receiving loads of bulk password attacks.
Most WordPress site owners have no idea their site is being probed dozens or even hundreds of times a day. This plugin makes that activity visible, with a clean dashboard showing attack counts by day, week and month, the top offending IP addresses, and a full filterable event log. No blocking, no bloat, no monthly fee — just clear data so you know exactly what you're up against. Download it free from the WordPress plugin directory.
Janric Simple Hardening
Janric Simple Hardening is a lightweight plugin to disable XML-RPC, restrict the REST API, and hide the WordPress version.
If that description makes no sense to you that's not a surprise, but in short this plugin removes from WordPress tools that most sites do not need but allow hackers to perform bulk login attacks on websites. You might think you have the login form protected, but without this plugin the hacker knows that they can bypass the login form and submit hundreds of login attempts together.
This plugin also hides from hackers a surprising list of users allowed into your admin. If a hacker is trying to guess your credentials and you have not hidden this list then you are telling them half of the information!
Lastly it is absolutely VITAL that you do not give away any queues to hackers that they can use so this hardens your site by removing the version number. Without it the version number is displayed in the code of every page and with a simple lookup a potential hacker can see what vulnerabilities are in the version of WordPress you are using. This can be a huge problem if you are not updated, even by a small version.
My advice, they are all free so download and install now. But at the very least the top 2 are essential and without them your site is at huge risk.