Xerotact SHIELD-X Security
by xerotact 0 (0 reviews)

Xerotact SHIELD-X Security

Shared-hosting security with WAF logging, opt-in enforcement, malware scanning, login protection, hardening, backups, and audit tools.

Xerotact SHIELD-X Security ranks #52,646 among WordPress.org plugins with 0+ active installations, is #3,496 of 4,499 in the Security category, and was last updated Sep 16, 2026. Data from WordPress.org, refreshed twice daily — see methodology.

Compatible with WP 7.1
v2.0.189 Current Version v2.0.189
Updated 5 hours ago Last Update on 16 Sep, 2026
Refreshed 9 hours ago Last Refreshed on
#3,496 of 4,499 in Security Actively maintained
View on WordPress.org
Rank
#52,646
No change
Active Installs
0+
-100%
KW Avg Position
128.5
0.5 worse
Downloads
1.1K
+3 today
Support Resolved
0%
No change
Rating
0%
Review 0 out of 5
0 (0 reviews)

Next Milestone 10

Total Progress 30%
0+ 10+
24,863
Ranks to Climb
-
Growth Needed
8,000,000
Active Installs
Pro

Unlock Exact Install Count

See the precise estimated active installs for this plugin, calculated from real-time ranking data.

  • Exact install estimates within tiers
  • Track install growth over time
  • Milestone progress predictions
Upgrade to Pro
Need 7 more installs to reach 10+

Rank Changes

56,394 59,165 61,936 64,706 67,477 09-09-2026 10-09-2026 11-09-2026 12-09-2026 13-09-2026 14-09-2026 15-09-2026 16-09-2026
53,699 57,639 61,579 65,518 69,458 01-09-2026 02-09-2026 03-09-2026 04-09-2026 05-09-2026 06-09-2026 07-09-2026 08-09-2026 09-09-2026 10-09-2026 11-09-2026 12-09-2026 13-09-2026 14-09-2026 15-09-2026 16-09-2026
Current #52,646
Change
Best #

Upgrade to Pro

Unlock 30-day and 90-day rank history charts with a Pro subscription.

Upgrade Now

Active Installs Growth

Active Installs 0,000,000+
Growth +0.0%
Peak 0,000,000

Downloads Growth

0 50 100 150 09-09-2026 10-09-2026 11-09-2026 12-09-2026 13-09-2026 14-09-2026 15-09-2026 16-09-2026
0 50 100 150 01-09-2026 02-09-2026 03-09-2026 04-09-2026 05-09-2026 06-09-2026 07-09-2026 08-09-2026 09-09-2026 10-09-2026 11-09-2026 12-09-2026 13-09-2026 14-09-2026 15-09-2026 16-09-2026
Downloads
Growth
Peak

Upgrade to Pro

Unlock 30-day, 90-day, and yearly download history charts with a Pro subscription.

Upgrade Now

Reviews & Ratings

0.0
0 reviews
Overall 0%
5
0 (0%)
4
0 (0%)
3
0 (0%)
2
0 (0%)
1
0 (0%)

Frequently Asked Questions

Common questions about Xerotact SHIELD-X Security

No. Core WAF, scanner, hardening, login security, backups, restore points, and logs are local. Vulnerability advisory feeds are optional and configurable by the site administrator.
No. SHIELD-X is designed to start conservatively. Use log-only mode first, review hits and false positives, then explicitly choose rule actions or enforce mode when you are ready. Matched scores are diagnostic by default; score-threshold challenge/block behavior is an advanced opt-in setting.
No. For shared-hosting safety, SHIELD-X inspects a bounded body surface, currently 32 KB by default and configurable up to 128 KB. Login, comment, admin-post/admin-ajax, WooCommerce, and contact form bodies are inspected as redacted key/value text so passwords, nonces, tokens, payment fields, and session fields are not stored. Multipart uploads are inspected through form fields, filenames, MIME types, sizes, and part headers, not binary file contents. Country blocking uses country headers supplied by a trusted proxy or CDN, such as Cloudflare, and does not bundle a GeoIP database.
No. The WordPress.org package is a pure WordPress plugin, so request inspection runs after WordPress begins loading.
SHIELD-X does not replace host-level malware cleanup, a server firewall, CDN edge protection, off-site backups, or emergency hosting support. It adds WordPress-level monitoring, hardening, recovery, and investigation tools that work inside the permissions available to a WordPress plugin.
No. By default, SHIELD-X skips wp-content/cache/, wp-content/upgrade/, wp-content/plugins/xerotact-shield-x-security/, node_modules/, vendor/ inside plugins and themes, and SHIELD-X private storage under .shield-x/. Vendored libraries should be reviewed by their authors. If you want to inspect a specific vendored path, copy it outside vendor/ first and run a targeted recheck from the SHIELD-X Scan page.
The database scanner inspects bounded batches from wp_options, recent post/page content, post metadata, comments, administrator accounts, administrator capability metadata, widgets, redirects, and WP-Cron payloads. It is a local security review tool, not a full database export scanner.
For performance and safe shared-hosting behavior, SHIELD-X skips vendor dependency folders, package caches, generated build folders, upgrade/temp folders, private backup storage, and oversized or unchanged files where metadata proves they did not change since the trusted baseline. This keeps routine scans responsive while focusing deeper checks on new or modified files.
No. The User Profiler is opt-in. When enabled, it uses a first-party cookie and stores recent request metadata locally for security investigation.
No. Settings exports are signed with this site's WordPress auth salts, so they can only be restored on the same WordPress site that created them.

Sign In / Register

You need to sign in or register to use this feature.