[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fcgHHffJBld4LbnlkPAm0omIsoGTkFGbQCGM8Xnd0zVI":3},{"slug":4,"display_name":4,"profile_url":5,"plugin_count":6,"total_installs":7,"avg_security_score":8,"avg_patch_time_days":9,"trust_score":10,"computed_at":11,"plugins":12},"manuelgalan","https:\u002F\u002Fprofiles.wordpress.org\u002Fmanuelgalan\u002F",1,40,100,30,94,"2026-08-29T07:02:03.168Z",[13],{"slug":14,"name":15,"version":16,"author":4,"author_profile":5,"description":17,"short_description":18,"active_installs":7,"downloaded":19,"rating":20,"num_ratings":20,"last_updated":21,"tested_up_to":22,"requires_at_least":23,"requires_php":24,"tags":25,"homepage":30,"download_link":31,"security_score":8,"vuln_count":20,"unpatched_count":20,"last_vuln_date":32,"fetched_at":33},"vulnity","Vulnity Security","1.3.5","\u003Cp>Vulnity Security brings enterprise-grade threat detection to WordPress. It connects your site to Vulnity’s SIEM platform, correlates events, and alerts you before issues become incidents.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Real-time security event collection and forwarding to Vulnity SIEM.\u003C\u002Fli>\n\u003Cli>Dashboard widgets that highlight critical findings and remediation steps.\u003C\u002Fli>\n\u003Cli>Scheduled security scans for core files, plugins, and themes.\u003C\u002Fli>\n\u003Cli>Centralized logging compatible with major SOC workflows.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Integration Requirements\u003C\u002Fh4>\n\u003Cp>To receive alerts, configure an API token and endpoint URL provided by your Vulnity SIEM account. Detailed configuration instructions are displayed after activating the plugin under \u003Cstrong>Vulnity > Settings\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Cp>WordPress Multisite is not supported in Vulnity Security 1.3.5. Network activation and subsite activation are blocked to avoid mixing configuration, firewall storage, cron jobs, or uninstall cleanup between subsites.\u003C\u002Fp>\n\u003Cp>Vulnity Security 1.3.5 requires WordPress 6.2 or newer. Older WordPress versions are blocked fail-safe so the plugin stays inactive instead of registering security, firewall, cron, REST, or SIEM behavior on an unsupported runtime.\u003C\u002Fp>\n\u003Ch4>External Services\u003C\u002Fh4>\n\u003Cp>This plugin connects to Vulnity’s external API hosted on Supabase Edge Functions (domain: \u003Ccode>euxnoekqasvzwfcbybkg.supabase.co\u003C\u002Fcode>, base URL \u003Ccode>https:\u002F\u002Feuxnoekqasvzwfcbybkg.supabase.co\u002Ffunctions\u002Fv1\u003C\u002Fcode>) to power SIEM alerts, inventory sync, and mitigation updates.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>What the service is and what it is used for:\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>Vulnity SIEM API for pairing\u002Funpairing, heartbeat checks, sending alerts, testing connectivity, syncing inventory, and receiving mitigation policies.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Endpoints used:\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>\u003Ccode>\u002Fpair-plugin\u003C\u002Fcode>, \u003Ccode>\u002Funpair-plugin\u003C\u002Fcode> (pairing and disconnecting the site).\u003C\u002Fli>\n\u003Cli>\u003Ccode>\u002Fheartbeat\u003C\u002Fcode> (periodic health check).\u003C\u002Fli>\n\u003Cli>\u003Ccode>\u002Fconnection-test\u003C\u002Fcode> (manual connection test).\u003C\u002Fli>\n\u003Cli>\u003Ccode>\u002Fscan-site-info\u003C\u002Fcode> (inventory sync).\u003C\u002Fli>\n\u003Cli>\u003Ccode>\u002Fgeneric-alert\u003C\u002Fcode>, \u003Ccode>\u002Fbrute-force-alert\u003C\u002Fcode>, \u003Ccode>\u002Ffile-security-alert\u003C\u002Fcode>, \u003Ccode>\u002Fmanage-user\u003C\u002Fcode>, \u003Ccode>\u002Fuser-management-alert\u003C\u002Fcode>, \u003Ccode>\u002Fpermission-change-alert\u003C\u002Fcode>, \u003Ccode>\u002Ffile-editor-alert\u003C\u002Fcode>, \u003Ccode>\u002Fplugin-change-alert\u003C\u002Fcode>, \u003Ccode>\u002Ftheme-change-alert\u003C\u002Fcode>, \u003Ccode>\u002Fcore-update-alert\u003C\u002Fcode>, \u003Ccode>\u002Fsuspicious-query-alert\u003C\u002Fcode>, \u003Ccode>\u002Fscanner-detected-alert\u003C\u002Fcode> (security alerts).\u003C\u002Fli>\n\u003Cli>\u003Ccode>\u002Fmitigation-config\u003C\u002Fcode>, \u003Ccode>\u002Fmitigation-update\u003C\u002Fcode> (mitigation policy sync and block\u002Funblock updates).\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>What data is sent and when:\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>Pairing\u002Funpairing: site ID, pair code, plugin\u002FWordPress\u002FPHP versions, and timestamp when pairing or disconnecting occurs.\u003C\u002Fli>\n\u003Cli>Heartbeat: site ID, URLs, site metadata (name, language, timezone, theme), and runtime info (plugin\u002FWordPress\u002FPHP versions, latency) on a scheduled interval.\u003C\u002Fli>\n\u003Cli>Alerts: site ID, alert type\u002Fseverity, timestamps, and event details (such as IP address, user\u002Faction metadata, or file change context) whenever a security event is detected.\u003C\u002Fli>\n\u003Cli>Inventory sync: site inventory details (installed plugins\u002Fthemes\u002Fcore metadata) when inventory sync runs.\u003C\u002Fli>\n\u003Cli>Mitigation: site ID, block\u002Funblock actions, IP address, reason, duration, and rule metadata when mitigation rules are synced or enforcement actions occur.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Why the data is sent:\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>To associate the site with your Vulnity account, deliver security alerts to the SIEM, validate connectivity, synchronize inventory and mitigation policies, and keep firewall enforcement consistent.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Policies:\u003C\u002Fstrong> See the Vulnity \u003Ca href=\"https:\u002F\u002Fvulnity.io\u002Fterms\" rel=\"nofollow ugc\">Terms of Service\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fvulnity.io\u002Fprivacy\" rel=\"nofollow ugc\">Privacy Policy\u003C\u002Fa> for details on how data is handled.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>This plugin is licensed under the GNU General Public License v2.0 or later. You are free to redistribute and\u002For modify it under the terms of the GPL as published by the Free Software Foundation. The complete license text is included in the bundled \u003Ccode>license.txt\u003C\u002Fcode> file and is also available online at https:\u002F\u002Fwww.gnu.org\u002Flicenses\u002Fgpl-2.0.html.\u003C\u002Fp>\n","Security monitoring and SIEM integration that keeps your WordPress sites safe in real time.",1010,0,"2026-06-05T09:08:00.000Z","6.9.5","6.2","7.4",[26,27,28,29],"intrusion-detection","monitoring","security","siem","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fvulnity.1.3.5.zip",null,"2026-07-22T17:31:50.256Z"]