ScanDeath Wordpress Plugin - Rating, Reviews, Demo & Download
Plugin Description
ScanDeath protects WordPress requests with a small local rule engine, IP blocking, event logging, and optional Apache routing for already blocked IP addresses. A blocked Apache request enters the regular WordPress front controller, where the firewall verifies the ban and its expiry without a public standalone plugin endpoint. WordPress/PHP request blocking also works behind Nginx without .htaccess.
The plugin is fully functional without an account, license key, payment, trial, quota, or external service. When no Cloud service is configured, ScanDeath uses bundled local rules.
Optional ScanDeath Cloud service
Site owners may optionally configure a ScanDeath Cloud service URL and service key. The external service performs rule analysis and rule-set processing on external infrastructure and returns data rules to the plugin. The service key authenticates that external service only; it does not unlock local plugin code or built-in features.
The official Cloud API URL is pre-filled. The plugin makes no Cloud request without a customer service key; the service additionally checks that the key and site entitlement are active. Automatic synchronization is disabled by default and requires a valid service key. Removing or changing the key or endpoint discards cached managed rules; bundled local protections remain active.
Hosted service information:
* Terms of Use: https://scandeath.com/terms/
* Privacy Policy: https://scandeath.com/privacy/
ScanDeath Cloud returns data rules only. The plugin does not download or execute PHP, JavaScript, or other executable code from the service.
Local risk intelligence
ScanDeath can calculate a local 0–100 advisory risk score for suspicious security events. The score combines rule confidence, request evidence, repeated activity, and independent rule matches. It runs entirely inside WordPress and does not send request data to an external AI service. Risk scores never block an IP by themselves; enforcement remains controlled by the firewall rules and selected Safe/Balanced/Aggressive mode.
Advisory IP reputation
The Blocked IPs and Logs pages can show advisory IP-intelligence labels from the Tor Project exit list and Spamhaus DROP network lists, automatically checked and cached on admin-page visits. This downloads public lists to your server; the plugin does not send visitors’ IPs in these list downloads.
Optionally, an administrator can enable per-IP Proxycheck (proxy/VPN/datacenter) and AbuseIPDB (reported abuse confidence) checks under ScanDeath > Settings. These external checks send public visitors’ IPs to the selected providers. They are OFF by default, are subject to small daily request limits, and are cached for 12 hours. AbuseIPDB requires a separate API key; Proxycheck can be used with limited keyless queries or a separate key. Private/reserved IPs are never queried externally.
Reputation information is advisory only and must not be treated as proof of wrongdoing. No reputation result can block, unblock, whitelist, change the risk score, or modify .htaccess. The existing 10-minute firewall behavior is unaffected.
Privacy
Without optional Cloud configuration, ScanDeath does not send request data to an external service.
If the site owner configures ScanDeath Cloud and manually or automatically synchronizes rules, the plugin sends the site URL, plugin version, and Cloud service key to the configured service. Rule synchronization does not send individual visitor request logs or blocked IP addresses.
Local risk intelligence is calculated on the WordPress site and does not send individual request data to an AI service.
Local event logs may contain visitor IP addresses because IP addresses are required to implement IP blocking. Site owners can set the local log-retention period in ScanDeath settings.
Help & contact
Open ScanDeath > Help for setup guidance, quick answers, links to public documentation and a general contact email. Free provides documentation and local protection, not support tickets. The general email address defaults to contact@scandeath.com and may be changed with the scandeath_contact_email WordPress filter; ensure that mailbox exists before distributing the plugin.
Screenshots
ScanDeath Security Dashboard with protection status, enforcement mode, local risk, blocked IPs, managed rules, synchronization, and system status.

