Secure Your WordPress Site Effortlessly

XccelaSecure is a lightweight security plugin that provides essential features to safeguard your WordPress site from common vulnerabilities with an easy-to-use interface.

100%
Free
5.6+
WordPress Version
v1.2
Latest Version
GPL
Open Source

Essential Security Features

Protect your WordPress site with our comprehensive security features designed to block common attacks and vulnerabilities.

Disable XML-RPC

Prevents brute-force attacks through XML-RPC by blocking all requests to xmlrpc.php with a 403 Forbidden error.

Limit Login Attempts

Block access after multiple failed login attempts with customizable limits. Users are temporarily locked out for 5 minutes.

Disable File Editing

Prevent unauthorized changes to files via the admin dashboard by disabling the built-in file editor functionality.

Hide WordPress Version

Conceal the WordPress version from public view to avoid exposure to known vulnerabilities in specific versions.

Remove Version Query Strings

Prevents CSS and JS files from exposing the WordPress version through query strings in file URLs.

Easy Configuration

Simple toggle switches and input fields make it easy to configure security settings without technical knowledge.

Easy Installation

Get XccelaSecure up and running in minutes with our simple installation process

Download & Upload

Download the plugin and upload to your WordPress plugins directory.

Activate & Configure

Activate the plugin and configure your security settings from the dashboard.

Screenshots

See XccelaSecure's intuitive interface in action

Settings Page

XccelaSecure Settings

Configure security settings with easy toggle switches and input fields.

Login Limit Error

Login Attempt Limit

Custom error message displayed when users exceed login attempts.

XML-RPC Blocked

XML-RPC Protection

Error message shown when XML-RPC access is attempted while disabled.

Frequently Asked Questions

Common questions about XccelaSecure plugin

Can I change the number of allowed login attempts?

Yes, you can easily adjust the maximum number of allowed login attempts using the input field on the settings page. The default is set to protect your site, but you can customize it according to your needs.

How does XML-RPC blocking work?

When enabled, all requests to xmlrpc.php will be blocked with a 403 Forbidden error. This prevents brute-force attacks that commonly target the XML-RPC functionality in WordPress.

What happens if I exceed the login attempt limit?

The user will be temporarily locked out for 5 minutes after exceeding the allowed login attempts. This helps prevent brute-force attacks while allowing legitimate users to regain access after the lockout period.

Is XccelaSecure compatible with other security plugins?

XccelaSecure is designed to be lightweight and compatible with most WordPress installations. However, we recommend testing with other security plugins to ensure there are no conflicts, especially with similar features like login limiting.

Does disabling file editing affect my ability to customize themes?

Yes, when file editing is disabled, you won't be able to edit theme or plugin files directly from the WordPress admin dashboard. This is a security feature that prevents unauthorized file modifications. You can still customize themes using FTP or cPanel file manager.

Ready to Secure Your WordPress Site?

Download XccelaSecure today and protect your WordPress site with essential security features. It's completely free and takes just minutes to install.

Version 1.2 • WordPress 5.6+ • GPL Licensed

Let's Talk!
Slide 1
Slide 2
Slide 3
with us. A virtual coffee?