Title: Safe Sites
Author: Hidayat Mahetar
Published: <strong>2025 年 4 月 23 日</strong>
Last modified: 2026 年 3 月 13 日

---

搜索插件

![](https://ps.w.org/safe-sites/assets/banner-772x250.png?rev=3280239)

**该插件尚未通过WordPress的最新3个主要版本进行测试**。 当与较新版本的WordPress一起
使用时，可能不再受到维护或支持，并且可能会存在兼容性问题。

![](https://ps.w.org/safe-sites/assets/icon.svg?rev=3280239)

# Safe Sites

 作者：[Hidayat Mahetar](https://profiles.wordpress.org/hidayatsafewp/)

[下载](https://downloads.wordpress.org/plugin/safe-sites.1.0.1.zip)

 * [详情](https://cn.wordpress.org/plugins/safe-sites/#description)
 * [评价](https://cn.wordpress.org/plugins/safe-sites/#reviews)
 *  [安装](https://cn.wordpress.org/plugins/safe-sites/#installation)
 * [开发进展](https://cn.wordpress.org/plugins/safe-sites/#developers)

 [支持](https://wordpress.org/support/plugin/safe-sites/)

## 描述

Safe Sites provides advanced security features to help keep your WordPress website
safe from threats. With real-time monitoring, detailed security insights, and easy-
to-use permission management, you can ensure your site is always protected.

#### Key Features

 * **Two-Factor Authentication (2FA)** – Secure your login with TOTP-based 2FA.
 * **Smart File Permission Control** – Easily manage file permissions based on your
   server type (Windows/Linux).
 * **Visual File Permissions Map** – See a color-coded structure of your site’s 
   file security.
 * **Malware Scanner** – Analyze your domain, URLs, and HTML security headers for
   vulnerabilities via VirusTotal.
 * **Security Dashboard** – View a complete overview of your site’s security health.
 * **Plugin & Theme Security** – Detect vulnerabilities in plugins and themes and
   receive alerts.
 * **Login & User Security** – Monitor login attempts and manage user sessions.
 * **Site Hardening** – Apply recommended security tweaks to your WordPress installation.
 * **Code Signing** – Verify the integrity of your plugin files.

### Detailed Features

**General Security & Server Health:**

 * **SSL Status** – Check if SSL is active for secure connections.
 * **Site Health & Server Info** – Displays PHP version, database version, and server
   details.
 * **Panic Mode** – Quickly lock down your site in case of an emergency.

**Access & User Security:**

 * **Two-Factor Authentication (2FA):**
    - **TOTP Support** – Use Google Authenticator, Authy, or any TOTP app.
    - **Configurable for All Roles** – Require 2FA for specific user roles.
    - **Backup Codes** – Generate backup codes for emergency access.
 * **Login Monitoring** – Track failed login attempts and monitor user activity.

**Security Monitoring & Protection:**

 * **File Permissions Management:**
    - **Windows Servers** – Show file read/write permissions.
    - **Linux Servers** – Display numeric file permissions along with current and
      recommended settings.
    - **Fix Permissions** – Select files and fix incorrect permissions directly.
 * **Visual File Permission Map** – Interactive file structure with security indicators.
 * **Hardening** – One-click security hardening for common WP vulnerabilities.
 * **Code Signing** – Ensure plugin files haven’t been tampered with.

**Malware & Security Scanner:**

 * **Domain & URL Analysis** – Scan domain and URLs for malware using VirusTotal
   API.
 * **Security Header & DNS Scan** – Check security headers and DNS settings.
 * **Alert System** – Receive alerts for detected threats.

**WordPress Management & Security:**

 * **Plugin & Theme Security:**
    - **Vulnerability Scanner** – Check for known security flaws.
    - **Inactive Plugin Alerts** – Warns about inactive components that pose risks.
 * **Security Dashboard** – A centralized panel for all security settings.

### External Services Used

Safe Sites relies on the following third-party services for security analysis and
malware detection. Below is a detailed breakdown of what each service does, what
data is sent, and where you can review their policies:

### **1. VirusTotal API**

**Purpose:** Used to scan domain, URLs, and file hashes for malware detection and
security threats.

**What data is sent & when?**
 – When a user initiates a manual malware or URL scan,
the plugin sends the target URL or domain to VirusTotal for analysis. – No user 
private data is sent—only the target URLs/domains or hash values of files are transmitted.

**Terms of Service & Privacy Policy:**
 – [VirusTotal Terms of Service](https://www.virustotal.com/terms-of-service)–
[VirusTotal Privacy Policy](https://www.virustotal.com/privacy-policy)

## 屏幕截图

[⌊Dashboard Overview – Complete security status summary⌉⌊Dashboard Overview – Complete
security status summary⌉[

Dashboard Overview – Complete security status summary

[⌊2FA Configuration – Secure your account with TOTP⌉⌊2FA Configuration – Secure 
your account with TOTP⌉[

2FA Configuration – Secure your account with TOTP

[⌊Malware Scanner – URL and Domain security analysis⌉⌊Malware Scanner – URL and 
Domain security analysis⌉[

Malware Scanner – URL and Domain security analysis

[⌊File Permissions – Monitor and fix file permissions⌉⌊File Permissions – Monitor
and fix file permissions⌉[

File Permissions – Monitor and fix file permissions

[⌊Code Signing – Verify the integrity of your plugin files⌉⌊Code Signing – Verify
the integrity of your plugin files⌉[

Code Signing – Verify the integrity of your plugin files

## 区块

该插件提供了 1 个区块.

 *   Demo Block Demo block scaffolded with SafeSites.

## 安装

 1. Download the plugin from WordPress.org.
 2. Upload the `safe-sites` folder to the `/wp-content/plugins/` directory.
 3. Activate the plugin via the WordPress ‘Plugins’ menu.
 4. Navigate to the “Safe Sites” menu in your WordPress dashboard.
 5. Configure your security settings and start monitoring.

## 常见问题

### Is Safe Sites compatible with my hosting environment?

Yes! Safe Sites works with all major hosting providers and is compatible with Apache,
Nginx, and LiteSpeed servers. It requires WordPress 6.0+ and PHP 8.0+.

### Does Safe Sites affect site performance?

No, Safe Sites is optimized for performance. It uses intelligent caching and efficient
scans to minimize server load.

### How often should I run malware scans?

We recommend weekly scans, but Safe Sites continuously monitors your site for threats.
You can also schedule or manually run scans anytime.

## 评价

![](https://secure.gravatar.com/avatar/c9be1ccb9389e9c7c4a903509c0139cf59feae1c29ab2b7b864994537566d8e9?
s=60&d=retro&r=g)

### 󠀁[Very Helpful and Easy to Use](https://wordpress.org/support/topic/very-helpful-and-easy-to-use-28/)󠁿

 [Hidayat Mahetar](https://profiles.wordpress.org/hidayatsafewp/) 2025 年 4 月 23
日

Safe Sites is a lightweight and powerful plugin. Easy to use, with smart file permission
controls and real-time security insights. Highly recommended for keeping your WordPress
site secure!

 [ 阅读所有1条评价 ](https://wordpress.org/support/plugin/safe-sites/reviews/)

## 贡献者及开发者

「Safe Sites」是开源软件。 以下人员对此插件做出了贡献。

贡献者

 *   [ Hidayat Mahetar ](https://profiles.wordpress.org/hidayatsafewp/)

[帮助将「Safe Sites」翻译成简体中文。](https://translate.wordpress.org/projects/wp-plugins/safe-sites)

### 对开发感兴趣吗?

您可以[浏览代码](https://plugins.trac.wordpress.org/browser/safe-sites/)，查看[SVN仓库](https://plugins.svn.wordpress.org/safe-sites/)，
或通过[RSS](https://plugins.trac.wordpress.org/log/safe-sites/?limit=100&mode=stop_on_copy&format=rss)
订阅[开发日志](https://plugins.trac.wordpress.org/log/safe-sites/)。

## 更新日志

#### 1.0.1

 * Added Two-Factor Authentication (2FA) support
 * Added site hardening and code signing
 * Improved VirusTotal malware scanning integration
 * Fixed minor security vulnerabilities

#### 1.0.0

 * Initial release
 * Implemented core security monitoring features
 * Added real-time threat detection
 * Integrated malware scanning capabilities
 * User activity monitoring
 * Plugin and theme vulnerability scanning

## 额外信息

 *  版本 **1.0.1**
 *  最后更新：**3 月前**
 *  活跃安装数量 **20+**
 *  WordPress 版本 ** 6.0 或更高版本 **
 *  已测试的最高版本为 **6.7.5**
 *  PHP 版本 ** 8.0 或更高版本 **
 *  语言
 * [English (US)](https://wordpress.org/plugins/safe-sites/)
 * 标签
 * [malware](https://cn.wordpress.org/plugins/tags/malware/)[security](https://cn.wordpress.org/plugins/tags/security/)
   [security scanner](https://cn.wordpress.org/plugins/tags/security-scanner/)[site protection](https://cn.wordpress.org/plugins/tags/site-protection/)
   [wp security](https://cn.wordpress.org/plugins/tags/wp-security/)
 *  [高级视图](https://cn.wordpress.org/plugins/safe-sites/advanced/)

## 评级

 5 星（最高 5 星）。

 *  [  1 条 5 星评价     ](https://wordpress.org/support/plugin/safe-sites/reviews/?filter=5)
 *  [  0 条 4 星评价     ](https://wordpress.org/support/plugin/safe-sites/reviews/?filter=4)
 *  [  0 条 3 星评价     ](https://wordpress.org/support/plugin/safe-sites/reviews/?filter=3)
 *  [  0 条 2 星评价     ](https://wordpress.org/support/plugin/safe-sites/reviews/?filter=2)
 *  [  0 条 1 星评价     ](https://wordpress.org/support/plugin/safe-sites/reviews/?filter=1)

[Your review](https://wordpress.org/support/plugin/safe-sites/reviews/#new-post)

[查看全部评论](https://wordpress.org/support/plugin/safe-sites/reviews/)

## 贡献者

 *   [ Hidayat Mahetar ](https://profiles.wordpress.org/hidayatsafewp/)

## 支持

有话要说吗？是否需要帮助？

 [查看支持论坛](https://wordpress.org/support/plugin/safe-sites/)