Guardian Gaze Security – AI Based Malware Scanner, Firewall and Login Protection
Guardian Gaze is a research-driven WordPress security plugin built by RedSecLabs to help website owners, developers, and agencies find and remove malware, hidden backdoors, injected database content, and unauthorized file changes — without slowing down your site. Unlike scanners that only check files, Guardian Gaze inspects both your WordPress files and your database, so malicious code hidden inside posts, options, postmeta, or comments doesn’t go unnoticed. Scanning works immediately after activation — there’s no mandatory account, license key, or registration wall blocking you from your first scan. Guardian Gaze focuses on: • WordPress malware and hidden backdoor scanning (core, plugins, themes, uploads) • Database malware scanning (options, posts, postmeta, comments) • File integrity monitoring for unauthorized changes • IP management, country blocking, and traffic filtering • Scheduled, automated scanning with email reports • Clear, centralized visibility into your site’s security posture Detection logic is backed by an ongoing threat intelligence feed. Guardian Gaze can run entirely with the malware definitions bundled in the plugin — optionally linking your site to our server keeps those definitions up to date automatically. Linking is free and takes seconds, but it is never required to scan. Why Guardian Gaze? • Scan first, decide later. No forced registration screen standing between you and a scan. • Database-aware. Most free scanners only check files. Guardian Gaze also scans wp_options, wp_posts, wp_postmeta, and wp_comments for injected iframes, base64 payloads, spam links, and eval()-based backdoors. • Lightweight by design. Scans are structured to avoid heavy resource usage on shared and managed hosting. • Built by security researchers. RedSecLabs maintains the detection patterns and threat intelligence behind Guardian Gaze. Key Features WordPress Malware & Backdoor Scanner A built-in scanner that checks WordPress core files, plugins, themes, and the uploads directory for suspicious or unauthorized code. • Full site, core-only, plugins-only, themes-only, or uploads-only scan modes • Detects modified or infected files and known malware/backdoor signatures • Highlights changes to WordPress core, plugin, or theme files • No registration required — scan immediately after activation • Designed for continuous monitoring, not just one-time checks Database Malware Scanner Scans your WordPress database directly for injected malicious content that file-only scanners miss. • Checks wp_options, wp_posts, wp_postmeta, and wp_comments • Flags hidden iframes, base64-encoded payloads, spam links, JavaScript redirects, and eval()/backdoor-style code • Severity-rated results (critical, high, medium, low) • One-click cleanup of flagged database records File Integrity Monitoring Tracks file changes across your WordPress installation over time. • Detects modified, newly added, or infected files • Highlights changes in WordPress core, plugin, or theme integrity • Lets you review findings before taking action IP Management & Firewall-Style Traffic Filtering Manage and reduce unwanted or abusive traffic at the IP level. • Manually block or allow specific IP addresses • Country-level blocking for geographic traffic filtering • Reduce bot noise, vulnerability scanners, and probing traffic Ideal for sites experiencing repeated probing or targeted attacks. Scheduled Scanning Automate malware scans and stay ahead of threats. • Daily or weekly scan schedules • Configure scan recipients and email reports • Review results from your dashboard or by email Security Notifications Get emailed the moment something worth knowing about happens, instead of having to check the dashboard. • Alert when an administrator account logs in • Alert when a plugin, theme, or WordPress core update becomes available (sent once per new version, no duplicates) • Set a custom alert recipient, or use the site admin email Central Security Dashboard One place to see your site’s current security posture: • Latest malware and database scan results • Site health overview (WordPress, PHP, plugin, and theme status) • Blocked and flagged IP addresses • Overall security score with a letter grade Continuous Threat Intelligence Updates Guardian Gaze ships with a bundled set of malware definitions, so scanning works out of the box. Optionally link your site to the Guardian Gaze Security Intelligence API to keep those definitions current automatically as new threats emerge. Privacy & Data Use Guardian Gaze only calls external services for functionality you’re actually using, such as fetching updated malware definitions or optional geolocation lookups. • No unnecessary data collection • No passwords or sensitive post/page content transmitted • Secure WordPress-native API communication (HTTPS) • Optional features (linking, geolocation) can be skipped or disabled • Only the security metadata required for the feature you’re using is processed Full details are listed under “External Services Used” below, as required for the WordPress.org plugin directory. Premium Add-On (Optional) Guardian Gaze is fully usable on its own — scanning, database malware detection, file integrity monitoring, IP management, and scheduled scans all work without upgrading. For teams who want additional hardening and automation, the separately-installed Guardian Gaze Premium add-on unlocks: • 🔒 AI/LLM-Assisted Backdoor Analysis — contextual AI review of suspicious files flagged during a scan, in addition to pattern-based detection • 🔒 Real-Time File Monitor — SHA-256 baseline snapshots that flag any file change the moment it happens • 🔒 Two-Factor Authentication (2FA) — TOTP support for Google Authenticator, Authy, 1Password, and similar apps • 🔒 Google reCAPTCHA Login Protection — reCAPTCHA v2 or v3 on the login form • 🔒 Brute-Force Login Lockout — automatic IP lockout after repeated failed login attempts • 🔒 One-Click Security Hardening — toggle common WordPress hardening rules without editing code • 🔒 Security Audit Log — a permanent log of important admin actions and events • 🔒 File Quarantine & Restore — isolate infected files safely, then restore or delete them Premium requires the free Guardian Gaze plugin to be active and is available at guardiangaze.com. External Services Used Guardian Gaze connects to the following services to provide security features and functionality: 1. Guardian Gaze API – wp-api.guardiangaze.com Used for license validation, malware pattern updates, threat intelligence updates, and optional email reporting. Data Sent: • Admin email • Site URL • API key • Plugin version and definitions version • IP addresses (for global blocking features) • Scan report data (if email reporting is enabled) Terms of Service: https://www.guardiangaze.com/terms-of-service/ Privacy Policy: https://www.guardiangaze.com/privacy-policy/ 2. Guardian Gaze API – www.guardiangaze.com Used for plugin registration. Data Sent: • Site URL Terms of Service: https://www.guardiangaze.com/terms-of-service/ Privacy Policy: https://www.guardiangaze.com/privacy-policy/ 3. WordPress.org API – api.wordpress.org Used for WordPress core file integrity checks and version validation. Data Sent: • WordPress version • Locale / language Terms of Service: https://wordpress.org/about/privacy/ Privacy Policy: https://wordpress.org/about/privacy/ 4. Guardian Gaze Country API – wp-api.guardiangaze.com/country.php Used for IP address geolocation. Data Sent: • Visitor IP address Terms of Service: https://www.guardiangaze.com/terms-of-service/ Privacy Policy: https://www.guardiangaze.com/privacy-policy/ Important Notes • All API calls use WordPress wp_remote_get() and wp_remote_post() • Data is transferred over HTTPS whenever available • No user passwords or sensitive content is collected or transmitted • Geolocation lookups are cached to limit external requests • Registering/linking your site is optional and only affects how current your malware definitions are — it does not gate scanning itself About RedSecLabs RedSecLabs is a cybersecurity company focused on threat research, detection engineering, and building defensive tools for real-world scenarios. Guardian Gaze reflects this philosophy by offering a transparent, research-backed WordPress security plugin built for long-term reliability and practical protection.
Top keywords
- wordpress21×1.82%
- gaze18×1.56%
- guardian18×1.56%
- guardian gaze18×1.56%
- malware14×1.21%
- security13×1.12%
- scan11×0.95%
- site11×0.95%
- com10×0.87%
- guardiangaze10×0.87%
- guardiangaze com10×0.87%
- https10×0.87%
Smush – Image Optimization, Compression, Lazy Load, WebP & CDN
Compress images, optimize images, and enable image lazy load automatically with the powerful Smush image optimizer to keep your WordPress site fast, without losing quality. Smush makes it easy to optimize images, compress images, and deliver images faster across your entire WordPress site. This all-in-one image optimizer automatically reduces image file sizes, enables image lazy load, and serves modern formats like WebP and AVIF, all without breaking image quality or adding extra work. Whether you’re running a blog, store, or portfolio, Smush helps you optimize images at scale and keep your site fast with a trusted WordPress image optimizer. Trusted by 1+ Million Sites | 4.8/5 Star Rating Get everything you need to optimize images and speed up your site. Smush works out of the box with no complicated setup – just install and let it handle the rest. Compress images without losing quality Reduce image file size automatically while keeping your images sharp and clear. Smush is an easy-to-use image optimizer which let’s you compress images using both lossless and lossy compression, giving you the best balance of quality and performance without extra work. You can also compress images outside the media library using Directory Smush, making it easy to optimize images stored in theme folders, plugins, or other directories on your server. Lazy load images for faster pages Enable image lazy load across your site so images load only when needed. This image optimizer improves initial page speed and creates a smoother experience for visitors without extra configuration. Serve WebP and AVIF images automatically (PRO) Convert images to WebP and AVIF and serve them automatically to supported browsers. Smush helps you optimize images using next-gen formats to reduce file size and improve load times across your WordPress site. Deliver images faster with an Image CDN (PRO) Serve images through a global image CDN to reduce latency and improve load times for visitors around the world. 119 global CDN servers Up to 500 GB of bandwidth Faster image delivery based on visitor location Improved performance for image-heavy and high-traffic sites Automatically resize and fix image dimensions (PRO) Eliminate common PageSpeed warnings and improve layout stability with automatic image sizing. Smush dynamically resizes images to perfectly fit their containers, regardless of original size, helping fix the “Properly size images” warning in Google PageSpeed Insights. It also automatically adds missing width and height attributes to your images, improving rendering speed and reducing layout shifts. This helps you meet the “Ensure images have explicit width and height” recommendation without any manual work. Optimize your entire site, automatically Smush works across your whole site as a powerful image optimizer to optimize images as you upload them and maintain performance over time without manual work. Optimize images automatically on upload Compress images in bulk or individually Works with your existing media library No need to re-upload images Enable image lazy load across your site Convert images to WebP and AVIF Deliver images with an integrated image CDN Automatically resize and serve correctly sized images Optimize images outside the media library with Directory Smush Built for performance Smush improves page speed and overall performance by reducing image weight and improving how images are delivered. Reduce page load times Improve user experience Better performance for image-heavy pages Supports image lazy load and preload images (PRO) for faster perceived performance Works with your existing setup Smush is built to work with your current WordPress setup, including popular themes, page builders, and plugins. Compatible with Gutenberg, Elementor, WPBakery, and more Works with WooCommerce stores No need to change your workflow Easy to enable and configure Designed to be simple You don’t need to be a performance expert to optimize images with Smush image optimizer. Works out of the box Simple settings when you need them No technical knowledge required Safe to use on any site Why choose Smush? There are plenty of image optimization plugins, but Smush focuses on making it easy to optimize images, compress images, and improve performance without complexity. As a leading WordPress image optimizer, Smush gives you powerful optimization tools without the technical hassle. Trusted by over 1 million WordPress users Built specifically for WordPress Regular updates and improvements Backed by the WPMU DEV team Get started in minutes Install Smush, activate it, and start to compress images, optimize images, and enable image lazy load right away. This easy-to-use image optimizer helps most sites see improvements immediately without changing how they upload or manage images. About Us WPMU DEV is a premium supplier of quality WordPress plugins, services and support. Learn more here: https://wpmudev.com/ Don’t forget to stay up to date on everything WordPress from the Internet’s number one resource: WPMU DEV Blog Hey, one more thing… we hope you enjoy our free offerings as much as we’ve loved making them for you! Contact and Credits Originally written by Alex Dunae at Dialect (dialect.ca, e-mail ‘alex’ at ‘dialect dot ca’), 2008-11.