Title: Webro Security
Author: webro
Published: <strong>1 سبتمبر، 2026</strong>
Last modified: 1 سبتمبر، 2026

---

البحث عن الإضافات

![](https://ps.w.org/webro-security/assets/banner-772x250.png?rev=3675560)

![](https://ps.w.org/webro-security/assets/icon-256x256.png?rev=3675560)

# Webro Security

 بواسطة [webro](https://profiles.wordpress.org/webrodk/)

[تنزيل](https://downloads.wordpress.org/plugin/webro-security.1.0.0.zip)

 * [تفاصيل](https://ar.wordpress.org/plugins/webro-security/#description)
 * [المراجعات](https://ar.wordpress.org/plugins/webro-security/#reviews)
 *  [التنصيب](https://ar.wordpress.org/plugins/webro-security/#installation)
 * [التطوير](https://ar.wordpress.org/plugins/webro-security/#developers)

 [الدعم](https://wordpress.org/support/plugin/webro-security/)

## الوصف

A WordPress plugin that adds security headers, CSP, login protection, SMTP, spam
protection and more. Functionality is continuously being expanded to cover more 
ground.

#### Features

 * Adds security headers, including configurable HSTS, X-Frame-Options, COOP and
   CORP
 * Supports Content Security Policy (CSP), editable from the admin UI and validated
   against unrecognized directives
 * Protects login with rate-limiting
 * Blocks weak passwords, with an exemption list for individual users
 * Blocks common/guessable usernames
 * Validates protected brand names against required domains. Self-registration blocks
   a brand-impersonating email outright
 * Locks file editing, with a temporary admin-bar toggle that automatically relocks
   after a period of inactivity
 * Honeypot spam protection (CF7, Elementor, WPForms, Forminator, lost password)
 * Custom SMTP sending, with a test-email button
 * Central security log with automatic retention, including new user account creation
 * Removes certain default WordPress traces from `<head>`
 * English, with community translations available via translate.wordpress.org

#### What does it protect against?

 * Basic login attacks
 * Some forms of user enumeration
 * Unwanted WordPress metadata
 * Missing security headers

**Important:** it does not protect against vulnerabilities in other plugins or themes,
poor server configuration, or missing updates.

#### Compatibility

Some security headers can affect elements such as iframes, embeds and third-party
scripts. Some of the CSP directives may be too strict and might need loosening depending
on your needs. This is done from the CSP field in the admin UI, which is available
to the administrator role.

#### About

Webro Security is developed and maintained by [Webro](https://webro.dk/), a web 
agency with offices in Odense and Aabenraa, Denmark. Webro builds and runs WordPress
sites for companies across a wide range of industries, and this plugin grew out 
of that daily work. The same hardening steps were being repeated by hand on site
after site, so they were collected into one plugin with settings that can be adjusted
per site instead of edited in code.

The plugin is built by [Lasse Enggaard](https://lasse-enggaard.dk/om/) and [Rikke Rasmussen](https://profiles.wordpress.org/rirasmussen/).
Lasse Enggaard is a Danish SEO specialist and partner at Webro. He has worked with
SEO since 2015 and with WordPress development alongside it, and today works with
search visibility, AI visibility and technical WordPress work for companies.

Rikke Rasmussen is a web developer at Webro and has been closely involved in building
the plugin and the testing across sites. Both of them continue to maintain it.

The plugin is aimed at site owners and the people who look after their sites, not
at security researchers. Every setting has a plain-language explanation next to 
it, so it is clear what a given header or policy actually changes before it is turned
on. Development continues, and features are added as they prove useful in real projects.

## لقطات الشاشة

[⌊Dashboard with an overview of active protection and recent security events⌉⌊Dashboard
with an overview of active protection and recent security events⌉[

Dashboard with an overview of active protection and recent security events

[⌊Security headers: X-Frame-Options, HSTS, COOP and CORP, with a list of the headers
actually sent⌉⌊Security headers: X-Frame-Options, HSTS, COOP and CORP, with a list
of the headers actually sent⌉[

Security headers: X-Frame-Options, HSTS, COOP and CORP, with a list of the headers
actually sent

[⌊Content Security Policy, editable one directive per line⌉⌊Content Security Policy,
editable one directive per line⌉[

Content Security Policy, editable one directive per line

[⌊SMTP settings with sender override and encryption options⌉⌊SMTP settings with 
sender override and encryption options⌉[

SMTP settings with sender override and encryption options

[⌊Password exemptions for individual users⌉⌊Password exemptions for individual users⌉[

Password exemptions for individual users

[⌊Brand protection: reserve a domain so only verified accounts can use it⌉⌊Brand
protection: reserve a domain so only verified accounts can use it⌉[

Brand protection: reserve a domain so only verified accounts can use it

## التنصيب

 1. Upload the plugin to `wp-content/plugins/`
 2. Activate it via the WordPress admin panel

#### Uninstallation

 * Removes the plugin’s saved options
 * Removes the plugin’s transients
 * Cleans up its own settings on uninstall

## المراجعات

لا توجد مراجعات لهذه الإضافة.

## المساهمون والمطوّرون

“Webro Security” هو برنامج مفتوح المصدر. وقد ساهم هؤلاء الأشخاص بالأسفل في هذه الإضافة.

المساهمون

 *   [ webro ](https://profiles.wordpress.org/webrodk/)
 *   [ Lasse Enggaard ](https://profiles.wordpress.org/lasseenggaard/)
 *   [ Rikke Rasmussen ](https://profiles.wordpress.org/rirasmussen/)

[ترجمة ”Webro Security“ إلى لغتك.](https://translate.wordpress.org/projects/wp-plugins/webro-security)

### مُهتم بالتطوير؟

[تصفّح الشفرة](https://plugins.trac.wordpress.org/browser/webro-security/)، تحقق
من [مستودع SVN](https://plugins.svn.wordpress.org/webro-security/)، أو الاشتراك 
في [سجل التطوير](https://plugins.trac.wordpress.org/log/webro-security/) بواسطة 
[RSS](https://plugins.trac.wordpress.org/log/webro-security/?limit=100&mode=stop_on_copy&format=rss).

## سجل التغييرات

#### 1.0.0

 * First version

## ميتا Meta

 *  Version **1.0.0**
 *  Last updated **قبل أسبوع واحد**
 *  Active installations **أقل من 10**
 *  WordPress version ** 6.0 أو أعلى **
 *  Tested up to **7.0.4**
 *  PHP version ** 8.0 أو أعلى **
 *  Language
 * [English (US)](https://wordpress.org/plugins/webro-security/)
 * Tags
 * [csp](https://ar.wordpress.org/plugins/tags/csp/)[login protection](https://ar.wordpress.org/plugins/tags/login-protection/)
   [security](https://ar.wordpress.org/plugins/tags/security/)[smtp](https://ar.wordpress.org/plugins/tags/smtp/)
   [spam protection](https://ar.wordpress.org/plugins/tags/spam-protection/)
 *  [عرض متقدم](https://ar.wordpress.org/plugins/webro-security/advanced/)

## التقييم

لم يتم تقديم أي مراجعات بعد.

[Your review](https://wordpress.org/support/plugin/webro-security/reviews/#new-post)

[See all reviews](https://wordpress.org/support/plugin/webro-security/reviews/)

## المساهمون

 *   [ webro ](https://profiles.wordpress.org/webrodk/)
 *   [ Lasse Enggaard ](https://profiles.wordpress.org/lasseenggaard/)
 *   [ Rikke Rasmussen ](https://profiles.wordpress.org/rirasmussen/)

## الدعم

لديك شيء لتقوله؟ بحاجة الى مساعدة؟

 [عرض منتدى الدعم](https://wordpress.org/support/plugin/webro-security/)