JavaScript is off. The country switcher and the demos need it; everything else on this page works.

WebCrew
Start free

Plugins · Security & anti-spam

Wordfence Security with AI, on every WordPress site you look after

Security plugins protect the site from inside. What they cannot do is tell you the site is down, that its core files changed on the server, or that a plugin two sites over has a published vulnerability. WebCrew monitors the site 24/7, matches Wordfence Security's installed version against the vulnerability databases, and updates it with a restore point when you say go.

Free for one site. Connect it in five minutes. No card.

Wordfence Security belongs to its publisher; WebCrew is not affiliated with it.

Wordfence Security5M+ active installs · version 9.0.0
Monitoring 24/7uptime from two regions, health scoreIncluded
Vulnerability checkWordfence Security's version matched against the databasesIncluded
UpdatesOn your schedule; restore point first, code difference kept, rolled back when a check failsIncluded
Assistant actions in Wordfence Securitychanges made for you, logged, one click to undoComing soon

Firewall, Malware Scanner, Two Factor Auth, and Comprehensive Security Features, powered by our 24-hour…

What goes wrong

Three things that go wrong on sites running Wordfence Security, and what you see instead

Each card is one conversation: what happened, what WebCrew did, and the moment you stepped in.

Wordfence sent an alert about a changed core file, but only to the client's old e-mail address.

  • WebCrew's own core-file check finds the same changed file and tells you, not the client.
  • You compare the file against the release, replace it, and rotate the administrator passwords.
  • The entry point was a plugin two versions behind; that update now waits in your queue on every site.

Two checks agree, and the message reaches the right person first.

A site is serving a fake CAPTCHA to visitors.

  • Core-file integrity finds a changed file and the time it changed.
  • Alert to you with the file, the diff and the plugin that let it in.
  • Over SSH we help clean it: file replaced, unknown admin removed, plugin updated, restore point before each step.

Cleanup help, never a guarantee it stays clean.

An administrator account appeared that nobody created.

  • A new administrator is created on the site.
  • The check sees it: name, e-mail, time added, on every site you run.
  • You remove it and rotate the passwords, with the log as your record.

Flagged the moment the check sees it.

What you can ask

Questions and changes about Wordfence Security, in plain words

Ask from the WebCrew dashboard, from your own AI tool over MCP, or, as it rolls out, from the assistant inside wp-admin Coming soon. Reading is instant; every change is logged and can be undone in one click first.

  • Which sites run Wordfence and which run another firewall, so I know what covers what?
  • Show me the Wordfence firewall mode per site: learning or enabled.
  • Did Wordfence block anything unusual on this site this week?

Included on every site

What WebCrew does for a site running Wordfence Security

Every change WebCrew makes takes a restore point first and can be undone in one click; you choose where it should ask you first. Monitoring reads; every change is logged and waits for a person.

Everything in site management

Uptime 24/7 from two regions

A site that stops answering, or answers with something else, reaches you within minutes with the response it gave.

Security scan and vulnerability match

Core-file integrity, unknown administrators, and Wordfence Security's installed version matched against the public vulnerability databases.

Updates with a restore point

On your schedule; restore point first, code difference kept, rolled back when a check fails.

Ask for changes in plain words

The assistant makes the change in Wordfence Security, shows you what it did, and keeps a restore point so one click undoes it Coming soon. Your own AI tools connect today over MCP.

Connecting

How to connect a site that runs Wordfence Security, and what we recommend

Where the host allows SSH keys, we recommend SSH: every file compared, not only what WordPress reports, and cleanup help when a site is compromised. Where it does not, the connector plugin covers monitoring, updates and Wordfence Security's version check in five minutes.

Connector plugin

Upload in wp-admin. No server access needed.
  • 24/7 uptime, health score, versions, administrators
  • Vulnerability matching and updates with a restore point
  • One-click login, DNS and mail settings

Five minutes. Remove the plugin and the site is disconnected.

Recommended

SSH

One key, scoped to the site's user on the server.
  • Everything the connector does
  • File-level integrity checks and faster updates with a full restore point
  • Malware cleanup and staging copies, when a site needs them

Ten minutes. The key is revoked from your dashboard at any time.

How connecting works, step by step

Questions

Before you connect a Wordfence Security site

Do I still need Wordfence Security with WebCrew?

Yes, if it protects the site from inside: a firewall, login limits, malware signatures. WebCrew watches from outside and across all your sites, and adds the file-level check and the vulnerability match.

Does WebCrew remove malware?

If a site is compromised, we help clean it: changed core files replaced, unknown administrators removed, the plugin that let it in updated or removed, with a restore point before each step. Cleanup needs the SSH connection. No tool can guarantee a site stays clean.

Will two security tools conflict?

Monitoring reads; it does not install a firewall or change Wordfence Security's rules. The connector and Wordfence Security run side by side.

Where do the vulnerability data come from?

Public vulnerability databases, matched against the exact installed version of each plugin on each site.

Do I have to install anything besides Wordfence Security?

One of two things: the WebCrew connector plugin, uploaded in wp-admin like any plugin, or one SSH key for the site's own user. Nothing else changes on the site.

Can I use my own Claude or ChatGPT with a site that runs Wordfence Security?

Yes. Connect your tool to WebCrew over MCP and ask about the site from your own chat. Reading is instant; changes are made for you, logged, and undone in one click.

What does it cost for a site running Wordfence Security?

The first site is free, for as long as you like. Every site after that is billed per site per day, monthly, for the days it was on. Plugins are never counted.

Is my content or Wordfence Security's data used to train anything?

No. Your content is never sold and never used to train a model, by WebCrew or by a provider it uses.

What if Wordfence Security is a premium plugin with a licence?

It updates through its own licence. WebCrew shows the pending version, takes the restore point first and keeps the code difference, the same as for any other plugin.

Connect the Wordfence Security site now. The first check is done within the hour.

Free for one site. No card.

Start free