Audit log, a full timeline of who did what, when.
Every important action on your site is recorded automatically, admin logins, failed login attempts, logouts, plugin and theme activations, and more. If something goes wrong, you’ll have a full timeline of who did what and when, making it easy to spot suspicious activity or roll back unwanted changes.

The plugin view: findings, severity and next steps inside the WordPress admin
Authentication events
Successful logins, failed login attempts (with IP), logouts, password resets, 2FA challenges.
User & role changes
New user registrations, role promotions or demotions, user deletions, profile edits.
Plugin & theme actions
Installations, activations, deactivations, deletions, updates, including who triggered each.
Works with
Login Security →
Brute force stops at the door.
Notifications →
Alerts that matter, digests for the rest.
File Integrity →
Byte-level change detection on every file.
See it on your own site
The free scan takes under five minutes and tells you the truth.