BaseCloud Shield
BaseCloud Shield is a lightweight yet powerful security plugin that enforces Two-Factor Authentication (2FA) on your WordPress login page. Unlike other bloat-heavy plugins, BaseCloud Shield focuses on reliability and flexibility in OTP delivery. Key Features: Plug & Play: Works immediately using standard WordPress email delivery. Multi-Recipient System: Send OTPs to the logging-in user, a manager email, or selected users. Multi-Channel Delivery: Choose multiple delivery methods simultaneously (Email, SendGrid, WhatsApp, SMS, Webhook). WhatsApp Integration: Send OTPs directly via WhatsApp using Twilio API. SMS Integration: Deliver OTPs via SMS using Twilio API. SendGrid API V3: Native integration for high-deliverability emails. Webhook Support: Connect to custom webhooks for advanced automation flows. Secure OTPs: 6-digit one-time passwords that expire automatically. Browser Trust: “Remember this device” functionality to reduce friction for authorized users. Advanced Attack Protection (v1.4.2): Credential stuffing detection, progressive delays, username enumeration protection. External Services This plugin may connect to external third-party services depending on your configuration. Below is a detailed explanation of what services are used, what data is sent, and when: SendGrid Email API (Optional) If you select “SendGrid API” as your delivery method in the plugin settings, this plugin will send data to SendGrid’s email service to deliver one-time password (OTP) codes. Service: SendGrid by Twilio What it’s used for: Sending two-factor authentication codes via email with improved deliverability When data is sent: Every time a user attempts to log in and 2FA is enabled Data sent: Recipient email address (user’s email or manager email if configured) Sender email address (configured in plugin settings) Site name Username attempting to log in 6-digit one-time password code Email subject and HTML body API Endpoint: https://api.sendgrid.com/v3/mail/send Terms of Service: https://www.twilio.com/legal/tos Privacy Policy: https://www.twilio.com/legal/privacy Important: You must have a SendGrid account and API key to use this feature. You are responsible for complying with SendGrid’s terms of service and ensuring proper data handling practices. Twilio API for WhatsApp & SMS (Optional) If you select “WhatsApp” or “SMS” as delivery methods, the plugin will send data to Twilio’s API to deliver one-time password codes. Service: Twilio What it’s used for: Sending two-factor authentication codes via WhatsApp and/or SMS When data is sent: Every time a user attempts to log in and 2FA is enabled with WhatsApp/SMS selected Data sent: Recipient phone number (from user meta field ‘billing_phone’) Sender phone number (WhatsApp number or SMS number configured in settings) Site name Username attempting to log in 6-digit one-time password code Message body API Endpoint: https://api.twilio.com/2010-04-01/Accounts/{AccountSid}/Messages.json Terms of Service: https://www.twilio.com/legal/tos Privacy Policy: https://www.twilio.com/legal/privacy Important: You must have a Twilio account with WhatsApp and/or SMS capabilities enabled. Phone numbers must be stored in user meta (field: ‘billing_phone’). You are responsible for complying with Twilio’s terms of service. Custom Webhook (Optional) If you select “Webhook” as a delivery method, the plugin will send login notification data to a webhook URL you configure. Service: Custom webhook endpoint (configured by you) What it’s used for: Sending login notifications to external systems for custom processing When data is sent: Every time a user attempts to log in and 2FA is enabled Data sent: Site name Username attempting to log in User email address 6-digit one-time password code Recipient information array Timestamp of login attempt Endpoint: User-configured webhook URL Important: When using the webhook option, you are responsible for the security and privacy compliance of the endpoint you configure. Ensure your webhook endpoint uses HTTPS and follows proper data protection practices. Standard WordPress Email (Default) By default, this plugin uses WordPress’s built-in wp_mail() function, which does not involve any external services unless your WordPress installation is configured to use a third-party SMTP service.
Top keywords
- email13×2.00%
- twilio13×2.00%
- api12×1.85%
- data12×1.85%
- sendgrid9×1.39%
- service9×1.39%
- sms9×1.39%
- webhook9×1.39%
- whatsapp9×1.39%
- user8×1.23%
- delivery7×1.08%
- https7×1.08%
RapID Secure Login
IMPORTANT: RapID-SL is now deprecated and cannot be used for new installations. Existing credentials will continue to work until they expire (1 year after issuance) but cannot be renewed. We would like to thank eveyone who has enjoyed using RapID-SL for the past few years, and will notify our user base should an alternative solution become available. Enjoy hassle-free and secure user login to WordPress websites and blogs. RapID-SL combines simplicity with a great user experience, removing the need for vulnerable and inconvenient usernames and passwords. Benefits 2FA from your phone with unrivalled ease of use. Up and running in a couple of minutes. No reliance on an external authentication service. Doesn’t use vulnerable and clumsy SMS one-time passwords. Use multiple phones as a backup. Simple “scan and fingerprint” interface – no need to type anything. Fast sign-up to blogs and websites. Features Easy log-in with your phone: simply scan a QR code using your phone, then provide a fingerprint or PIN – never need personal details or passwords again. Enterprise-grade cybersecurity technology, using 2048-bit cryptography, trusted by governments and corporations worldwide. Direct mobile browser login too – just tap the QR code. Easy install: no coding or special knowledge required. Customized logon screens supported via simple WordPress “shortcodes”. Automatic login to multiple accounts on multiple sites from multiple devices with a single app. Download on Google Play Download on iTunes Service Platform Requirements Minimum WordPress version: 4.5 Minimum PHP version: 5.2.4 Minimum OpenSSL version: 1.0.2
Top keywords
- multiple4×1.61%
- login3×1.20%
- minimum3×1.20%
- passwords3×1.20%
- phone3×1.20%
- rapid-sl3×1.20%
- user