PluginProbe
Patchstack – WordPress & Plugins Security / 2.3.1
Patchstack – WordPress & Plugins Security v2.3.1
2.3.7 trunk 2.1.0 2.1.1 2.1.10 2.1.11 2.1.12 2.1.13 2.1.14 2.1.15 2.1.16 2.1.17 2.1.18 2.1.19 2.1.2 2.1.20 2.1.21 2.1.22 2.1.23 2.1.24 2.1.25 2.1.3 2.1.4 2.1.5 2.1.6 All 49 releases
patchstack / readme.txt

readme.txt in Patchstack – WordPress & Plugins Security 2.3.1, at readme.txt

167 lines 11.9 KB
No matching file
Up and down to move Enter to open Esc to close
Raw Download Zip
1 === Patchstack - WordPress & Plugins Security ===
2 Contributors: patchstack
3 Tags: security, firewall, vulnerability, vulnerabilities,virtual patching
4 License: GPLv3
5 License URI: https://www.gnu.org/licenses/gpl-3.0.html
6 Requires at least: 4.4
7 Tested up to: 6.6
8 Stable tag: 2.3.1
9 Requires PHP: 5.6
10
11 Patchstack automatically identifies & mitigates security vulnerabilities in WordPress plugins, themes, and core.
12
13 == Description ==
14
15 Patchstack is a powerful tool that helps to identify security vulnerabilities within all your websites' plugins, themes, and WordPress core.
16 Patchstack is powered by the WordPress ecosystem's most active community of ethical hackers.
17 Patchstack is trusted by the leading WordPress experts such as: Pagely, Cloudways, GridPane, Plesk, and others!
18
19 https://www.youtube.com/watch?v=LL3Yy15rJ3g
20
21 ### Why do I need Patchstack Community (*Free) version?*
22 * Be the first to know about new vulnerabilities!
23 * Save time by monitoring all your websites from a single dashboard.
24 * Receive notifications if any installed plugins or themes have security issues.
25 * Get simple actionable suggestions to secure your websites.
26 * Spend fewer resources fixing WordPress security issues (avoid expensive clean-ups).
27 * Worry less about your website's security and focus on your work.
28
29 ### What does Patchstack Community (*Free) version include?*
30 **Detect security issues before hackers take over your website:**
31
32 * Detect the latest security vulnerabilities in WordPress plugins.
33 * Detect the latest security vulnerabilities in WordPress themes.
34 * Detect the latest security vulnerabilities in WordPress core.
35 * Receive real-time alerts via email if any security vulnerabilities are found.
36 * Have a central security dashboard for up to 10 (upgradable to 50) websites (via the Patchstack App).
37
38 **Important Resources**
39
40 * [Support](https://docs.patchstack.com)
41 * [Changelog](https://docs.patchstack.com/changelog/plugin-changelog/)
42 * [Facebook Community](https://www.facebook.com/groups/patchstackcommunity)
43 * [Vulnerability news blog post](https://patchstack.com/articles/wordpress-vulnerability)
44 * [Patchstack vulnerability database](https://patchstack.com/database)
45
46 **See what our customers say about our paid plans:**
47
48 * "Patchstack is awesome. All of my sites are protected by Patchstack and none have ever been hacked. High recommended." - Jose Gil (August 2021)
49 * "The only WAF I trust. They are way ahead of the curve providing firewall security for WordPress websites." - Mark Werle (August 2021)
50 * "Love the product! Best decision I made regarding security on my websites!" - Ben Poston (August 2021)
51 * "The service here is superb! And they always are right on it with the best solution to solve the problem or question at hand. The tool itself is, well, it speaks for itself. I am very satisfied with this project and the service they offer." - Daniel Canup (March 2021)
52
53 (*Comparisons are done by comparing paid versions)
54
55 Sucuri vs. Patchstack [https://patchstack.com/sucuri-alternative/](https://patchstack.com/sucuri-alternative/)
56 Wordfence vs. Patchstack [https://patchstack.com/wordfence-alternative/](https://patchstack.com/wordfence-alternative/)
57 Malcare vs. Patchstack [https://patchstack.com/malcare-alternative/](https://patchstack.com/malcare-alternative/)
58 Sitelock vs. Patchstack [https://patchstack.com/sitelock-alternative/](https://patchstack.com/sitelock-alternative/)
59
60 == Installation ==
61
62 Simply install the Patchstack plugin by searching for "Patchstack" on the plugin management page of WordPress or install the plugin manually by following the steps:
63
64 1. Download the plugin from the WordPress.org Patchstack plugin download page.
65 2. Unzip the .zip file.
66 3. Upload the entire `patchstack` directory to the `/wp-content/plugins/` directory.
67 4. Activate Patchstack through the 'Plugins' menu in WordPress.
68
69 == Frequently Asked Questions ==
70
71 = What makes plugin vulnerabilities so dangerous? =
72 A worrisome website hacking statistic is that well over 90% of WordPress vulnerabilities are related to plugins or themes. One report found that as much as 98% of WordPress vulnerabilities are due to plugins while another study reported that 95% of vulnerabilities were because of plugins and themes.
73 To be secure, you should always keep WordPress plugins, themes, and core updated and monitored. Ensure you are always aware of the plugins you’re using on your websites and always remove the ones you are not using.
74 When it comes to WordPress security plugins, we first recommend you get a better understanding of the WordPress security ecosystem and how they work.
75 Find one that can offer [vPatching](https://patchstack.com/articles/virtual-patching) ([check out Patchstack's features](https://patchstack.com/pricing)).
76
77 = How does Patchstack Community (free) version protect sites from vulnerabilities? =
78 Patchstack Community (free) version will let you know if you have any vulnerabilities present in the plugins, themes, or WordPress core version that are installed on your site.
79 By staying informed and receiving alerts about vulnerabilities, you can reduce the resources spent on fixing WordPress security issues, avoiding expensive clean-ups in the long run.
80
81 = What features does Patchstack Community (free) version include? =
82 With Patchstack you will be able to **eliminate security issues before hackers take over your website. You can detect the latest security vulnerabilities in WordPress plugins, themes, and core. You will receive real-time alerts to email or Slack if any security vulnerabilities are found and have a central security overview for up to 10 websites in the Patchstack App.
83 Optionally you can also enable vPatch protection against vulnerabilities for $5/month for individual sites. You can also increase your free plan site limit to 50 sites with a volume-upgrade add-on.
84
85 = What features does Patchstack Developer (paid) version include? =
86 With Patchstack Developer version you can identify plugin vulnerabilities, receive automatic vPatches to these vulnerabilities, and get detailed reports on your security status. You also get access to additional hardening options, like advanced custom rules and the Community IP blocklist.
87
88 = Included features are: =
89 * Plugin vulnerability detection (also included in free)
90 * Theme vulnerability detection (also included in free)
91 * WordPress core vulnerability detection (also included in free)
92 * vPatches for WordPress plugins
93 * vPatches for WordPress themes
94 * 0-day protection (OWASP top 10)
95 * Unlimited custom firewall rules
96 * Logs and analytics
97 * Unlimited custom alert triggers
98 * Weekly / monthly PDF reports
99 * Alerts to Slack
100 * Alerts to email (also included in free)
101
102 = What checks does Patchstack Community (free) version perform on your website? =
103 We do not perform any external checks on your website. We do however match the plugins, themes, and WordPress core you have installed on your website with our vulnerability database to determine if there is a known vulnerability.
104
105 = How will I be alerted if I have a vulnerability on my site? =
106 With the Patchstack Community (free) version, you can set up alerts using email (Slack notifications are available in the Developer plan).
107
108 = Does Patchstack conflict with any other security plugins? =
109 We have not had issues with Patchstack conflicting with other security services, but we do recommend using as few different tools on your WordPress site as possible. Avoid enabling similar features if using another security plugin to prevent potential site-breaking issues. If you have any issues with other security tools, please contact our support so we could investigate the issue.
110
111 = Are any logs stored in my database? =
112 We do not store any logs in your database or your filesystem on the Community (free) version of Patchstack.
113
114 = Does the Community (free) version plugin include a firewall? =
115 Patchstack free version does not include a firewall, the free version is there to let you know if you have any vulnerabilities present on your website.
116
117 = Will Patchstack slow down my website? =
118 The free version of Patchstack does not run anything aside from scheduled tasks on your website, so there will be no noticeable difference. The paid version does run several tasks on each page load but based on tests from us and from our customers we have seen that Patchstack does not affect your website's performance in any significant or noticeable way.
119
120 = Does Patchstack work on a multisite environment? =
121 Once you install the plugin on a multisite installation, you will see a page where you can activate Patchstack on the sites that are available on the multisite installation.
122 Each site will be added to the Patchstack app individually and will take up a slot on your account.
123
124 = Where can I learn more about Patchstack? =
125 You can learn more about Patchstack at the Patchstack website and blog.
126 See more here: [https://patchstack.com/](https://patchstack.com/)
127
128 = What support options are available with Patchstack? =
129 Patchstack offers chat support at [patchstack.com](https://patchstack.com) in addition to support articles available on the support page. To contact chat support, open [patchstack.com](https://patchstack.com) and find the green chat bubble at the bottom right corner of your screen (note that some adblockers and privacy extensions can block this, so you might have to whitelist the Patchstack site).
130
131 = How long does the Patchstack setup take? =
132 Setting up Patchstack takes no more than a few minutes.
133
134 = How do I upgrade from a Community (free) version to the Developer version? =
135 You can upgrade from free to a paid version on your dashboard at the Patchstack App. Just log in at [app.patchstack.com/login](http://app.patchstack.com/login) or directly go to [app.patchstack.com/setup](http://app.patchstack.com/setup) to set up a plan.
136
137 = Do I need to pay for support? =
138 No, support from the Patchstack team is free. However, for free version users, replies may take up to 1-2 business days. Patchstack paid version users will receive an answer from the support within 24 hours.
139
140 = What information does Patchstack collect? =
141 We take your privacy very seriously. After activating Patchstack, it will store some information such as the software installed on your site. Please see our Terms & Conditions, Privacy Policy, and DPA for more information.
142
143 = Where can I find Patchstack Terms & Conditions, Privacy Policy, and DPA? =
144 Terms & Conditions: [https://patchstack.com/terms-and-conditions/](https://patchstack.com/terms-and-conditions/)
145 Privacy Policy: [https://patchstack.com/privacy-policy/](https://patchstack.com/privacy-policy/)
146 Data Processing Agreement (DPA): [https://patchstack.com/data-processing-agreement-dpa/](https://patchstack.com/data-processing-agreement-dpa/)
147
148 = How can I join the Patchstack Facebook community? =
149 You can join the Patchstack Facebook community here: [https://www.facebook.com/groups/patchstackcommunity](https://www.facebook.com/groups/patchstackcommunity)
150
151 = What steps should I take to have my WordPress plugin undergo a security audit with Patchstack? =
152 See more about Patchstack security audits here: [https://patchstack.com/auditing/](https://patchstack.com/auditing/). You can also submit your plugin or theme to the [Patchstack mVDP (Managed Vulnerability Disclosure Program)](https://patchstack.com/for-plugins/).
153
154 = Where do I report security bugs? =
155 You can report any security bugs found in the source code of this plugin through the [Patchstack Vulnerability Disclosure Program](https://patchstack.com/database/vdp/patchstack). The Patchstack team will assist you with verification and CVE assignment.
156
157 == Screenshots ==
158
159 1. Patchstack App Dashboard
160 2. Patchstack App Alerts Overview
161 3. Patchstack App Site Hardening
162 4. Patchstack App Firewall Overview
163 5. Patchstack App Components Overview
164
165 == Changelog ==
166
167 To view the changelog of the Patchstack plugin, please go to [here](https://docs.patchstack.com/changelog/plugin-changelog/).