Really Simple Security – Simple and Performant Security (formerly Really Simple SSL)
Easily improve site security with WordPress Hardening, Two-Factor Authentication (2FA), Login Protection, Vulnerability Detection and SSL certificate. Really simple, Effective and Performant WordPress Security Really Simple Security is the most lightweight and easy-to-use security plugin for WordPress. It secures your WordPress website with SSL certificate generation, including proper 301 https redirection and SSL enforcement, scanning for possible vulnerabilities, Login Protection and implementing essential WordPress hardening features. We believe that security should have the absolute minimum effect on website performance, user experience and maintainability. Therefore, Really Simple Security is: Lightweight: Every security feature is developed with a modular approach and with performance in mind. Disabled features won’t load any redundant code. Easy-to-use: 1-minute configuration with short onboarding setup. Security Features Easy SSL Migration Migrates your website to HTTPS and enforces SSL in just one click. 301 redirect via PHP or .htaccess Secure cookies Let’s Encrypt: Install an SSL Certificate if your hosting provider supports manual installation. Server Health Check: Your server configuration is every bit as important for your website security. WordPress Hardening Tweak your configuration and keep WordPress fortified and safe by tackling potential weaknesses. Prevent code execution in the uploads folder Prevent login feedback and disable user enumeration Disable XML-RPC Disable directory browsing Username restrictions (block ‘admin’ and public names) and much more.. Vulnerability Detection Get notified when plugins, themes or WP core contain vulnerabilities and need appropriate action. Login Protection Allow or enforce Two-Factor Authentication (2FA) for specific user roles. Users receive a two-factor code via Email. Improve Security with Really Simple Security Pro Protect your site with all essential security features by upgrading to Really Simple Security Pro. Advanced SSL enforcement Mixed Content Scan & Fixer. Detect files that are requested over HTTP and fix them to HTTPS, both Front- and Back-end. Enable HTTP Strict Transport Security and configure your site for the HSTS Preload list. Firewall Really Simple Security Pro includes a performant and efficient WordPress firewall, to stop bots, crawlers and bad actors with IP and username blocks. 404 blocking – Blocks crawlers as they trigger unusual numbers of 404 errors. Region blocking – Only allow/block access to your site from specific regions. Automated and customisable Firewall rules. IP blocklist and allowlist. Security Headers Security headers protect your site visitors against the risk of clickjacking, cross-site-forgery attacks, stealing login credentials and malware. Independent of your Server Configuration, works on Apache, LiteSpeed, NGINX, etc. Protect your website visitors with X-XSS Protection, X-Content-Type-Options, X-Frame-Options, a Referrer Policy and CORS headers. Automatically generate your WordPress-tailored Content Security Policy. Vulnerability Measures When a vulnerability is detected in a plugin, theme or WordPress core you will get notified accordingly. With Vulnerability Measures, you can configure simple but effective measures to make sure that a critical vulnerability won’t remain unattended. Force update: An update process will be tried multiple times until it can be assumed development of a theme or plugin is abandoned. You will be notified during these steps. Quarantine: When a plugin or theme can’t be updated to solve a vulnerability, Really Simple Security can quarantine the plugin. Advanced Site Hardening Choose a custom login URL Automated File Permissions check and fixer Rename and randomize your database prefix Change the debug.log file location to a non-public folder Disable application passwords Control admin creation Disable HTTP methods, reducing HTTP requests Login Protection Secure your website’s login process and user accounts with powerful security measures. Two-Step verification (Email login) 2FA (two factor authentication) with TOTP Passwordless login with passkey login Enforce strong passwords and frequent password change Limit Login Attempts With Limit Login Attempts you can configure a threshold to temporarily or permanently block IP addresses or (non-existing) usernames. You can also throw a CAPTCHA after a failed login (hCaptcha or Google reCaptcha) Access Control Restrict access to your site for specific regions. Add specific IP addresses or IP ranges to the Blocklist or Allowlist. Useful Links Documentation Security Definitions Translate Really Simple Security Issues & pull requests Feature requests Love Really Simple Security? If you want to support the continuing development of this plugin, please consider buying Really Simple Security Pro, which includes some excellent security features and premium support. About Really Simple Plugins Our mission is to make complex WordPress requirements really easy. Really Simple Security is developed by Really Simple Plugins. For generating SSL certificates, Really Simple Security uses the le acme2 PHP Let’s Encrypt client library, thanks to ‘fbett’ for providing it. Vulnerability Detection uses WP Vulnerability, an open-source initiative by Javier Casares. Want to join as a collaborator? We’re on GitHub as well!
Top keywords
- security27×3.54%
- really15×1.97%
- simple15×1.97%
- login14×1.84%
- really simple14×1.84%
- really simple security11×1.44%
- simple security11×1.44%
- wordpress10×1.31%
- vulnerability9×1.18%
- ssl8×1.05%
- site7×0.92%
- website6×0.79%
Pixel Manager for WooCommerce – Conversion Tracking, Google Ads, GA4, TikTok, Dynamic Remarketing
The Pixel Manager is the most complete conversion tracking plugin for WooCommerce. Set up Google Ads conversion tracking, Google Analytics GA4 e-commerce tracking, Meta/Facebook Pixel, TikTok Pixel, and more – in minutes, not hours. No coding required. Unlike Google Tag Manager (GTM), which requires significant technical expertise to configure WooCommerce e-commerce tracking correctly, the Pixel Manager provides a turnkey solution with over 12 years of development. It automatically handles edge cases like payment gateway redirects, order duplication prevention, and consent mode – all the things that take hours to get right with manual tag management. 🆕 New: Conversion tracking for OpenAI ads on ChatGPT OpenAI is rolling out advertising on ChatGPT, and the Pixel Manager is one of the first WooCommerce plugins to support it. The Pro version tracks your OpenAI ads with the browser pixel, a server-side Conversions API connection, and Advanced Matching – so you can measure exactly which purchases your ChatGPT ads drive, from day one. Also new: Microsoft Clarity heatmaps and session recordings (Pro, beta), and the rebuilt, faster Nova admin interface (free). 🚀 Endorsed by Google’s Tag Team This plugin was recommended to us by Google’s Tag Implementation Team. That should say enough. says @dpackert24 This plugin was demonstrated to me by a Google Tagging Support person. ‘nough said 🙂 says @galbaras We’re using this for our biggest clients and it’s working great! says @wodobo Pixel Manager for WooCommerce is the go-to plugin for both tech wizards and casual users. says @chxz What makes the Pixel Manager different? Most WooCommerce tracking plugins only handle the basics: firing a conversion pixel on the thank you page. The Pixel Manager goes much further. It tracks the entire e-commerce customer journey – from product impressions and add-to-cart events through checkout and purchase – across all major advertising and analytics platforms simultaneously. This gives you complete data for conversion optimization, dynamic remarketing audience building, and accurate ROAS reporting. The Pro version adds server-side tracking (Conversion API / CAPI) that sends conversion data directly from your server to advertising platforms. This bypasses browser limitations like ad blockers, Safari ITP cookie restrictions, and network issues – typically recovering up to 30% more conversions that browser-only tracking misses. Our unique Automatic Conversion Recovery (ACR) feature goes even further by automatically identifying and recovering missed conversions nightly. Key Benefits ✅ Easy setup – just enter your tracking IDs and you’re done. ✅ Accurate e-commerce event tracking across all platforms. ✅ GDPR and CCPA compliant with Google Consent Mode v2. ✅ Works with 15+ consent management platforms out of the box. ✅ Lightweight – won’t slow down your WooCommerce store. ✅ Payment Gateway Accuracy Report – diagnose conversion tracking drops. ✅ Automatic Conversion Recovery (ACR) – recover lost conversions (Pro). ✅ OpenAI ads (ChatGPT) conversion tracking, browser and server-side (Pro). ✅ AI-ready – AI agents can safely configure the plugin through the WordPress Abilities API. Free Tracking Pixels Google Ads Pixel – conversion value tracking, dynamic remarketing, cart item data Google Analytics Pixel (GA4) – full Enhanced E-Commerce tracking Meta Ads Pixel (Facebook Pixel) – remarketing events and custom audiences Hotjar Pixel – heatmaps and session recordings Free Features Google Tag Gateway for Advertisers – first-party tracking through Google’s servers Google Consent Mode v2 – full compliance with EU, UK, and US privacy regulations Google Ads Dynamic Remarketing – build audiences based on product interactions Google Ads Cart Item Tracking – feed cart data to Smart Shopping and Performance Max campaigns Google Shopping New Customer Parameter – optimize for new customer acquisition GA4 Enhanced E-Commerce – track product impressions, add to cart, checkout steps, and purchases Meta Remarketing Events – ViewContent, AddToCart, InitiateCheckout, Purchase Basic Order Duplication Prevention – avoid counting the same conversion twice Customizable filters – fine-tune tracking output for your specific setup Lazy-loaded product list support – works with infinite scroll and AJAX product loading Payment Gateway Accuracy Report – identify which payment gateways cause conversion tracking drops Nova admin interface – rebuilt from the ground up, faster and cleaner, with a getting-started checklist for new installs Abilities API integration – AI agents (Claude, ChatGPT, and others) can discover, read, and safely update your tracking settings Opportunities – prioritized, actionable suggestions to improve your tracking and campaign performance Have a look at the full feature list over here. Premium Tracking Pixels Adroll Ads Contentsquare Statistics CrazyEgg Analytics Criteo Ads – retargeting and audience events through the Criteo OneTag (beta) GroundTruth Ads – omnichannel engagement and conversion tracking (beta) Hyros – ad attribution through the Hyros Universal Script with funnel milestone tags (beta) LinkedIn Ads Microsoft Ads (Bing Ads) – UET tag tracking and server-side conversions through the Microsoft Advertising Conversions API Microsoft Clarity – heatmaps and session recordings with e-commerce events (beta) Mixpanel – product analytics with the full shopping funnel, server-side purchases through the Ingestion API, session replay and user identification (beta) Nextdoor Ads – conversion tracking through the Nextdoor Universal Pixel (beta) OpenAI Ads – conversion tracking for ads on ChatGPT Outbrain Ads Pinterest Ads Reddit Ads Snapchat Ads Taboola Ads TikTok Ads Triple Whale – visitor journey tracking and marketing attribution (beta) X (Twitter) Ads VWO (Visual Website Optimizer) – A/B testing Premium Features Automatic Conversion Recovery (ACR) – automatically recover missed conversions nightly Server-side tracking (CAPI) – Meta, TikTok, Pinterest, Snapchat, Reddit, OpenAI, Nextdoor, Microsoft Ads, GA4 Measurement Protocol Advanced Order Duplication Prevention Google Ads Enhanced Conversions – first-party data for improved attribution Google Ads Conversion Adjustments – send refund data back to Google Ads Scroll Tracking – measure how far visitors scroll on your pages Automatic Phone and Link Click Tracking Have a look at the full feature list over here. Ready to recover lost conversions and get accurate tracking data? Visit sweetcode.com to learn more about the Pro version. Documentation Comprehensive setup guides, troubleshooting, and API references: Open the documentation News Consent Management The Pixel Manager integrates with all major Consent Management Platforms (CMPs) to ensure your tracking pixels respect visitor consent choices. It supports Google Consent Mode v2, including region-specific consent defaults for the EU, UK, and US states with privacy regulations. Compatible consent management plugins: Beautiful and Responsive Cookie Consent Cookiebot Cookie Confirm Cookie Script Complianz GDPR/CCPA Cookie Consent Cookie Notice Cookie Notice & Compliance for GDPR / CCPA Cookie Law Info FAZ Cookie Manager GDPR Cookie Compliance WP AutoTerms CookiePro by OneTrust Termly Iubenda WP Consent API WP Cookie Consent Please read the following for additional setup information Requirements List of requirements Security Review Although we follow security best practices, we wanted to ensure that we didn’t miss anything. So, we had the plugin reviewed by Patchstack, a cybersecurity company specializing in WordPress security. The summary of their report was: “We were unable to detect any vulnerabilities that would impact the security status of the plugin in a serious way.” Managed Vulnerability Disclosure Program We are committed to ensuring the security of our customers and their data. If you believe you have found a security vulnerability in the Pixel Manager for WooCommerce, we encourage you to report it through Patchstack our security partner. Patchstack runs a managed Vulnerability Disclosure Program (mVDP) that helps us receive, triage, and respond to reported vulnerabilities. Patchstack also provides a reward for the responsible disclosure of security vulnerabilities. Report a vulnerability