Select one or more tags, then press “Search Plugins”

Find Plugin with any / all of the selected criteria
Search Plugin

UX3 Security Wordpress Plugin - Rating, Reviews, Demo & Download

UX3 Security Wordpress Plugin - Rating, Reviews, Demo & Download
No ratings yet
Free
Follow for free plugins, new theme releases and theme news

Plugin Description

UX3 Security connects your WordPress site to the UX3 Security cloud dashboard for centralized firewall management. Block SQL injection attempts, XSS attacks, malicious bots, spam submissions, and more — with rules managed from a single place across all your sites.

Key features

  • Web Application Firewall — blocks SQLi, XSS, and other common attack patterns
  • Bot protection — detects and blocks bad bots, fake search-engine crawlers, anonymous bot traffic
  • Spam protection — honeypot + content-based detection for forms
  • Word filter — block requests matching custom keyword lists
  • Geo-blocking — block traffic from specific countries
  • Rate limiting — prevents brute-force and scraping
  • Smart filter — one-click allow-list for false positives
  • Centralized dashboard — all your sites in one place at central.ux3security.com
  • Real-time alerts — email notifications for attacks, disconnections, disk warnings, etc.

How it works

  1. Sign up at central.ux3security.com and add your site
  2. Copy the API URL and token from your dashboard
  3. Install this plugin and paste them into Settings UX3 Security
  4. Enable protection — done. Manage rules from the dashboard.

External services

This plugin connects to two external services in order to function. Each is described below in line with WordPress.org’s third-party service disclosure guideline.

1. UX3 Security API

What it is and what it is used for: The cloud dashboard at central.ux3security.com is the central management plane for the plugin. It distributes firewall rules to the agent, receives logs of blocked attacks, and tracks site connection status.

When and what data is sent:

  • On every blocked request: visitor IP, country (resolved server-side), request URL and method, user-agent, attack type that triggered the block, timestamp.
  • On every approximately 5 minutes: a rules-version check (lightweight) and an agent heartbeat with site identifier.
  • On every approximately 60 minutes: server diagnostics (PHP version, server software, OS, disk usage, OpenSSL version, cURL version, memory peak, platform/install-method detection).

What is NOT sent: post or page content, user names, passwords, email addresses, database content, file content.

Service URL: the URL you configure in Settings -> UX3 Security (typically https://central.ux3security.com/api/v1).
Provider: UX3 Security.
Terms of service: https://central.ux3security.com/terms
Privacy policy: https://central.ux3security.com/privacy

2. ip-api.com

What it is and what it is used for: ip-api.com is a third-party IP geolocation service. The plugin queries it to resolve the country, city, ISP, and approximate latitude/longitude of visitor IPs. Geo data is used for country-based blocking rules, the geographic view of attack traffic on the dashboard, and proxy/hosting detection.

When and what data is sent: only the visitor’s IP address, when a request hits the firewall and the IP has not been resolved within the last 24 hours. The IP is the only piece of data transmitted in the request URL. ip-api.com does not receive any other request details, headers, or content.

Service URL: http://ip-api.com/json/{ip} (free tier: 45 requests per minute, no API key required).
Provider: ip-api.com.
Terms of service: https://members.ip-api.com/legal
Privacy policy: https://ip-api.com/docs/legal

Screenshots

No screenshots provided


Reviews & Comments