[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fbDQC38UML1JgkEX6ninhQil-HJp-yEnr22d7kHIJxWk":3,"$fVrKrDDXaaMa5va1zlqznPM-K7Ic5K06ffjCM6ph6VcI":134,"$fYJX2Kv64Bblh31tD1DRUqnfHlNbvobgERhOccYoivnM":139},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"discovery_status":29,"vulnerabilities":30,"developer":31,"crawl_stats":27,"alternatives":37,"analysis":27,"fingerprints":27},"super-duper-two-factor-login","Super Duper Two-Factor Login","2.5.14","Super Duper Plugins","https:\u002F\u002Fprofiles.wordpress.org\u002Frogerruckstuhl\u002F","\u003Cp>\u003Cstrong>Super Duper Two-Factor Login\u003C\u002Fstrong> adds robust two-factor authentication to your WordPress site. Unlike many alternatives, this plugin is completely free – no hidden costs, no premium tiers, no upsells. Every feature is included from the start.\u003C\u002Fp>\n\u003Cp>🇨🇭🇩🇪🇦🇹 \u003Cem>Hinweis für DACH-Nutzer: Plugin und Support sind auf Deutsch (Schweiz\u002FDeutschland\u002FÖsterreich) verfügbar. Alle Texte und Einstellungen sind vollständig auf Deutsch übersetzt.\u003C\u002Fem>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Fully translated out of the box\u003C\u002Fstrong> in German (Switzerland, Germany, Austria), English, French, Spanish, Italian and Dutch – no separate language pack required.\u003C\u002Fp>\n\u003Ch4>PHP 8.2 or higher required (for security reasons)\u003C\u002Fh4>\n\u003Cp>This plugin requires \u003Cstrong>PHP 8.2 or higher\u003C\u002Fstrong>. PHP 8.0 and 8.1 have both reached End of Life and no longer receive security updates – running a 2FA plugin on an unmaintained PHP version would defeat its purpose. PHP 8.2 lets us use modern security primitives (immutable configuration, type-safe method handling, strict return contracts) that make the plugin harder to attack.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Don’t have PHP 8.2 yet?\u003C\u002Fstrong> Most hosting providers let you switch the PHP version with a single click in the control panel (Plesk, cPanel, Hostpoint, all-inkl, Cyon, raidboxes, etc.). It usually takes less than a minute and does not require any downtime. If in doubt, ask your hoster’s support – they help with PHP upgrades for free.\u003C\u002Fp>\n\u003Ch4>Two Verification Methods\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>TOTP (Authenticator App)\u003C\u002Fstrong> – Works with Google Authenticator, FreeOTP+, Authy, Microsoft Authenticator, and any TOTP-compatible app. Setup via QR code or manual key entry.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Email\u003C\u002Fstrong> – Receive a 6-digit code via email on every login. No smartphone required.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Comprehensive Fallback System\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>10 Backup Codes\u003C\u002Fstrong> – One-time emergency codes in case you lose your phone. Copy, download, print, or email them to yourself.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Administrator Recovery Key\u003C\u002Fstrong> – Each admin receives a personal 32-character key during setup. Works even when all backup codes are used up.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>FTP Emergency Recovery\u003C\u002Fstrong> – As a last resort, create an empty file named \u003Ccode>.sdtfa-recovery\u003C\u002Fcode> in \u003Ccode>wp-content\u002F\u003C\u002Fcode> via FTP. Temporarily disables 2FA for all administrators. Admins are notified hourly by email.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Enforcement & Trust\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Role-Based Enforcement\u003C\u002Fstrong> – Require 2FA for administrators, editors, subscribers, or any role.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Grace Period\u003C\u002Fstrong> – Set a deadline so users have time to set up 2FA before enforcement kicks in.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Hard Enforcement\u003C\u002Fstrong> – Without a grace period, users must complete 2FA setup on the login page before gaining any access.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Enforcement Areas\u003C\u002Fstrong> – Choose where to enforce: admin area, WooCommerce account, checkout, or entire site.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Trust This Device\u003C\u002Fstrong> – Users can save their computer so the 2FA code isn’t required on every login. Configurable duration (1–365 days).\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Integration\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>WooCommerce\u003C\u002Fstrong> – Adds a “Two-Factor Authentication” tab to the My Account page. Enforce 2FA for the account area and checkout.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Shortcode\u003C\u002Fstrong> – Display the user’s 2FA status anywhere with \u003Ccode>[sdtfa_status]\u003C\u002Fcode>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Setup Reminder\u003C\u002Fstrong> – A dismissable admin notice with a “Set up now” button. No auto-popups; users open the setup flow only by clicking.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Security\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>AES-256-GCM encryption for TOTP secrets at rest\u003C\u002Fli>\n\u003Cli>Secure HttpOnly cookies for trusted devices\u003C\u002Fli>\n\u003Cli>Hashed token storage (never stored in plain text)\u003C\u002Fli>\n\u003Cli>No external dependencies – everything runs locally in pure PHP\u003C\u002Fli>\n\u003Cli>No external API calls, no tracking, no data collection\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Privacy & Hardening (optional)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Cstrong>Hide user data in REST API\u003C\u002Fstrong> – Replace sensitive user fields (name, slug, link, avatar) with neutral values for unauthenticated requests. The REST endpoint stays reachable for SEO and import tools, but anonymous visitors no longer see real display names. Uses a strict whitelist that automatically drops any extra fields injected by SEO, page-builder or e-commerce plugins (Yoast, Rank Math, AIOSEO, Elementor, WooCommerce, …). Example response for an anonymous visitor on \u003Ccode>\u002Fwp-json\u002Fwp\u002Fv2\u002Fusers\u002F1\u003C\u002Fcode>:\u003C\u002Fp>\n\u003Cp>{“id”:1,”name”:”Author”,”url”:””,”description”:””,”link”:”https:\\\u002F\\\u002Fexample.com\\\u002F”,”slug”:”author”,”avatar_urls”:{}}\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Block author archives\u003C\u002Fstrong> – Redirect unauthenticated visitors away from \u003Ccode>?author=N\u003C\u002Fcode> and \u003Ccode>\u002Fauthor\u002F\u003Cslug>\u002F\u003C\u002Fcode> to prevent user enumeration.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Disable password reset\u003C\u002Fstrong> – Disable the “Lost your password?” function for administrators and\u002For selected roles. Useful when 2FA must be the only authentication path.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Users list column\u003C\u002Fstrong> – A clean “SDTFA” column on Users \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> All Users that shows the real 2FA status (TOTP, Email, or off) and replaces duplicate columns added by host mu-plugins or other 2FA plugins.\u003C\u002Fli>\n\u003C\u002Ful>\n","Free 2FA plugin for WordPress: TOTP authenticator app, email codes, backup codes, WooCommerce, role enforcement. No upsells, no premium tier.",20,514,0,"2026-05-20T21:17:00.000Z","7.0.2","6.8","8.2",[19,20,21,22,23],"2fa","authenticator","security","two-factor","woocommerce","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsuper-duper-two-factor-login\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsuper-duper-two-factor-login.2.5.14.zip",100,null,"2026-07-22T17:31:50.256Z","no_bundle",[],{"slug":32,"display_name":7,"profile_url":8,"plugin_count":33,"total_installs":11,"avg_security_score":26,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},"rogerruckstuhl",2,30,94,"2026-08-29T15:53:09.341Z",[38,56,72,94,115],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":13,"downloaded":46,"rating":13,"num_ratings":13,"last_updated":47,"tested_up_to":48,"requires_at_least":49,"requires_php":50,"tags":51,"homepage":54,"download_link":55,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"cloudusk-2fa-two-factor-authentication","Cloudusk 2FA – Two Factor Authentication","0.0.1","cloudusk","https:\u002F\u002Fprofiles.wordpress.org\u002Fcloudusk\u002F","\u003Cp>Cloudusk 2FA – Two Factor Authentication is a free and easy-to-use two-factor authentication (2FA) plugin for WordPress.\u003C\u002Fp>\n\u003Cp>It adds an extra layer of security to your WordPress login by requiring a time-based one-time password (TOTP) in addition to a username and password. This helps protect WordPress user accounts from unauthorized access caused by weak or compromised passwords, brute-force attacks, and automated login attempts.\u003C\u002Fp>\n\u003Cp>Cloudusk 2FA uses industry-standard TOTP (RFC 6238) and works with popular authenticator apps such as Google Authenticator, Authy, and Microsoft Authenticator. No SMS, email codes, or third-party services are required.\u003C\u002Fp>\n\u003Cp>The plugin is designed to be lightweight and user-friendly, with a simple setup process that can be completed directly from the user profile screen.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>TOTP-based two-factor authentication for WordPress\u003C\u002Fli>\n\u003Cli>Compatible with Google Authenticator, Authy, Microsoft Authenticator, and other TOTP apps\u003C\u002Fli>\n\u003Cli>QR code-based setup\u003C\u002Fli>\n\u003Cli>Backup recovery codes to prevent lockouts\u003C\u002Fli>\n\u003Cli>No SMS, email, or external services required\u003C\u002Fli>\n\u003Cli>Lightweight and performance-friendly\u003C\u002Fli>\n\u003Cli>Works with the default WordPress login flow\u003C\u002Fli>\n\u003Cli>Fully free to use\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Privacy\u003C\u002Fh4>\n\u003Cp>Cloudusk 2FA does not send any data to external services. All authentication is handled locally within your WordPress installation.\u003C\u002Fp>\n","A free and lightweight two-factor authentication (2FA) plugin for WordPress using TOTP and authenticator apps.",291,"2026-01-29T13:47:00.000Z","6.9.5","6.0","8.1",[19,52,21,53],"google-authenticator","two-factor-authentication","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcloudusk-2fa-two-factor-authentication.0.0.1.zip",{"slug":57,"name":58,"version":59,"author":60,"author_profile":61,"description":62,"short_description":63,"active_installs":13,"downloaded":64,"rating":13,"num_ratings":13,"last_updated":65,"tested_up_to":15,"requires_at_least":66,"requires_php":67,"tags":68,"homepage":70,"download_link":71,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"configify-2fa","Configify 2FA","1.0.0","Configify","https:\u002F\u002Fprofiles.wordpress.org\u002Fconfigify\u002F","\u003Cp>Configify 2FA adds Two-Factor Authentication to every important action on your WordPress site, all configurable from a single settings page.\u003C\u002Fp>\n\u003Cp>Choose the method that fits your audience:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Google Authenticator (TOTP) — RFC 6238 compliant. Works with Google Authenticator, Authy, Microsoft Authenticator, 1Password, Bitwarden, and any TOTP app.\u003C\u002Fli>\n\u003Cli>Math CAPTCHA — Server-side arithmetic challenge. No external dependencies. Works offline.\u003C\u002Fli>\n\u003Cli>Google reCAPTCHA — v2 (checkbox) or v3 (invisible, score-based).\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Protect any combination of:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Login (wp-login.php + WooCommerce)\u003C\u002Fli>\n\u003Cli>Registration (WordPress + WooCommerce)\u003C\u002Fli>\n\u003Cli>Forgot Password\u003C\u002Fli>\n\u003Cli>Change \u002F Reset Password\u003C\u002Fli>\n\u003Cli>Comment Submission\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>What makes Configify 2FA different\u003C\u002Fh4>\n\u003Cp>Security Audit Dashboard — Every 2FA event (success, failure, lockout, setup, method change) is recorded with username, IP address, user agent, and timestamp. Filter, search, and export to CSV directly from your admin panel.\u003C\u002Fp>\n\u003Cp>Trusted Device Memory — After verifying, users can choose to trust their current device for a set number of days. Subsequent logins from that device skip the 2FA step. Tokens are cryptographically random and bound to the user agent. Admins can revoke trusted devices per user from the profile screen.\u003C\u002Fp>\n\u003Cp>Brute-Force Lockout — Repeated 2FA failures trigger a configurable lockout by user and IP address to stop automated attacks.\u003C\u002Fp>\n\u003Cp>Email OTP Fallback — When TOTP is active but a user has not yet set up their authenticator app, a 6-digit one-time code is sent to their email address as a fallback.\u003C\u002Fp>\n\u003Cp>Per-Role Enforcement — Require 2FA only for Administrators, Editors, or any custom role. Leave all unchecked to apply to every role.\u003C\u002Fp>\n\u003Cp>WooCommerce Support — Hooks into WooCommerce login, registration, lost password, and account password change, not just the default WordPress forms.\u003C\u002Fp>\n\u003Ch4>Security Details\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>TOTP implementation is pure PHP with no third-party library dependency. Secrets are stored in WordPress user-meta and never exposed in plain text.\u003C\u002Fli>\n\u003Cli>Math CAPTCHA answers are stored in server-side transients with a 10-minute TTL and consumed on first use.\u003C\u002Fli>\n\u003Cli>Pending login sessions are stored in a custom database table, expire after 10 minutes, and are purged daily via WP-Cron.\u003C\u002Fli>\n\u003Cli>Trusted device tokens are cryptographically random (48 characters), hashed with wp_hash() before storage, and bound to the user agent string.\u003C\u002Fli>\n\u003Cli>All form submissions require a WordPress nonce in addition to the 2FA challenge.\u003C\u002Fli>\n\u003Cli>TOTP verification includes a clock-skew tolerance of plus or minus two 30-second windows to account for imprecise device clocks.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin connects to the following external services. No data is ever sent to Configify servers.\u003C\u002Fp>\n\u003Ch4>Google reCAPTCHA\u003C\u002Fh4>\n\u003Cp>This plugin can use Google reCAPTCHA to protect forms. It is only active when the admin selects reCAPTCHA as the 2FA method.\u003C\u002Fp>\n\u003Cp>It sends the user’s IP address and a browser interaction token to Google’s servers each time a protected form is submitted.\u003C\u002Fp>\n\u003Cp>This service is provided by Google LLC: \u003Ca href=\"https:\u002F\u002Fpolicies.google.com\u002Fterms\" rel=\"nofollow ugc\">Terms of Service\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Fpolicies.google.com\u002Fprivacy\" rel=\"nofollow ugc\">Privacy Policy\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>goQR.me QR Code API\u003C\u002Fh4>\n\u003Cp>This plugin uses the goQR.me API (api.qrserver.com) to generate QR code images for Google Authenticator setup. It is only used when a user clicks “Generate QR Code” on the Settings page while TOTP is the active method.\u003C\u002Fp>\n\u003Cp>It sends the TOTP URI — which contains the site name, the user’s email address, and the TOTP secret — to api.qrserver.com to generate the QR code image. The service does not store or log QR code contents. The generated image is cached for approximately 30 seconds and then deleted.\u003C\u002Fp>\n\u003Cp>This service is provided by goQR.me: \u003Ca href=\"https:\u002F\u002Fgoqr.me\u002Flegal\u002Ftos-api.html\" rel=\"nofollow ugc\">Terms of Service\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Fgoqr.me\u002Fprivacy-safety-security\u002F\" rel=\"nofollow ugc\">Privacy Policy\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>WooCommerce Compatibility\u003C\u002Fh4>\n\u003Cp>Configify 2FA integrates with WooCommerce out of the box with no additional configuration. It hooks into:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>woocommerce_process_login_errors\u003C\u002Fli>\n\u003Cli>woocommerce_process_registration_errors\u003C\u002Fli>\n\u003Cli>woocommerce_lostpassword_form\u003C\u002Fli>\n\u003Cli>woocommerce_edit_account_form\u003C\u002Fli>\n\u003Cli>woocommerce_save_account_details_errors\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Privacy\u003C\u002Fh4>\n\u003Cp>Configify 2FA stores the following data locally on your server:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>A TOTP secret and confirmation flag in wp_usermeta.\u003C\u002Fli>\n\u003Cli>Trusted device token hashes and expiry timestamps in wp_usermeta.\u003C\u002Fli>\n\u003Cli>Pending session tokens in a custom table (wp_c2fa_sessions) — deleted automatically after 10 minutes.\u003C\u002Fli>\n\u003Cli>Security audit log entries in a custom table (wp_c2fa_audit_log) — pruned automatically after the configured retention period (default 90 days).\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>All data is removed when the plugin is deleted (via uninstall.php).\u003C\u002Fp>\n","Flexible Two-Factor Authentication for WordPress. Choose Google Authenticator (TOTP), Math CAPTCHA, or Google reCAPTCHA — with a security audit log.",116,"2026-06-16T23:52:00.000Z","5.8","7.4",[19,69,21,53,23],"login","https:\u002F\u002Fconfigify.ca\u002Fconfigify-2fa","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fconfigify-2fa.1.0.0.zip",{"slug":73,"name":74,"version":75,"author":76,"author_profile":77,"description":78,"short_description":79,"active_installs":80,"downloaded":81,"rating":82,"num_ratings":83,"last_updated":84,"tested_up_to":15,"requires_at_least":85,"requires_php":67,"tags":86,"homepage":89,"download_link":90,"security_score":91,"vuln_count":92,"unpatched_count":13,"last_vuln_date":93,"fetched_at":28},"really-simple-ssl","Really Simple Security – Simple and Performant Security (formerly Really Simple SSL)","9.6.1","Really Simple Plugins","https:\u002F\u002Fprofiles.wordpress.org\u002Freallysimpleplugins\u002F","\u003Cp>Easily improve site security with WordPress Hardening, Two-Factor Authentication (2FA), Login Protection, Vulnerability Detection and SSL certificate.\u003C\u002Fp>\n\u003Ch3>Really simple, Effective and Performant WordPress Security\u003C\u002Fh3>\n\u003Cp>Really Simple Security is the most lightweight and easy-to-use security plugin for WordPress. It secures your WordPress website with SSL certificate generation, including proper 301 https redirection and SSL enforcement, scanning for possible vulnerabilities, Login Protection and implementing essential WordPress hardening features.\u003C\u002Fp>\n\u003Cp>We believe that security should have the absolute minimum effect on website performance, user experience and maintainability. Therefore, Really Simple Security is:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Lightweight:\u003C\u002Fstrong> Every security feature is developed with a modular approach and with performance in mind. Disabled features won’t load any redundant code.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Easy-to-use:\u003C\u002Fstrong> 1-minute configuration with short onboarding setup.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Security Features\u003C\u002Fh3>\n\u003Ch4>Easy SSL Migration\u003C\u002Fh4>\n\u003Cp>Migrates your website to HTTPS and enforces SSL in just one click.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>301 redirect via PHP or .htaccess\u003C\u002Fli>\n\u003Cli>Secure cookies\u003C\u002Fli>\n\u003Cli>Let’s Encrypt: Install an SSL Certificate if your hosting provider supports manual installation.\u003C\u002Fli>\n\u003Cli>Server Health Check: Your server configuration is every bit as important for your website security.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>WordPress Hardening\u003C\u002Fh4>\n\u003Cp>Tweak your configuration and keep WordPress fortified and safe by tackling potential weaknesses.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Prevent code execution in the uploads folder\u003C\u002Fli>\n\u003Cli>Prevent login feedback and disable user enumeration\u003C\u002Fli>\n\u003Cli>Disable XML-RPC\u003C\u002Fli>\n\u003Cli>Disable directory browsing\u003C\u002Fli>\n\u003Cli>Username restrictions (block ‘admin’ and public names)\u003C\u002Fli>\n\u003Cli>and much more..\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Vulnerability Detection\u003C\u002Fh4>\n\u003Cp>Get notified when plugins, themes or WP core contain vulnerabilities and need appropriate action.\u003C\u002Fp>\n\u003Ch4>Login Protection\u003C\u002Fh4>\n\u003Cp>Allow or enforce Two-Factor Authentication (2FA) for specific user roles. Users receive a two-factor code via Email.\u003C\u002Fp>\n\u003Ch3>Improve Security with Really Simple Security Pro\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Freally-simple-ssl.com\u002F\" rel=\"nofollow ugc\">Protect your site with all essential security features by upgrading to Really Simple Security Pro.\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Advanced SSL enforcement\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Mixed Content Scan & Fixer. Detect files that are requested over HTTP and fix them to HTTPS, both Front- and Back-end.\u003C\u002Fli>\n\u003Cli>Enable HTTP Strict Transport Security and configure your site for the HSTS Preload list.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Firewall\u003C\u002Fh4>\n\u003Cp>Really Simple Security Pro includes a performant and efficient WordPress firewall, to stop bots, crawlers and bad actors with IP and username blocks.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>404 blocking – Blocks crawlers as they trigger unusual numbers of 404 errors.\u003C\u002Fli>\n\u003Cli>Region blocking – Only allow\u002Fblock access to your site from specific regions.\u003C\u002Fli>\n\u003Cli>Automated and customisable Firewall rules.\u003C\u002Fli>\n\u003Cli>IP blocklist and allowlist.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Security Headers\u003C\u002Fh4>\n\u003Cp>Security headers protect your site visitors against the risk of clickjacking, cross-site-forgery attacks, stealing login credentials and malware.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Independent of your Server Configuration, works on Apache, LiteSpeed, NGINX, etc.\u003C\u002Fli>\n\u003Cli>Protect your website visitors with X-XSS Protection, X-Content-Type-Options, X-Frame-Options, a Referrer Policy and CORS headers.\u003C\u002Fli>\n\u003Cli>Automatically generate your WordPress-tailored Content Security Policy.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Vulnerability Measures\u003C\u002Fh4>\n\u003Cp>When a vulnerability is detected in a plugin, theme or WordPress core you will get notified accordingly. With Vulnerability Measures, you can configure simple but effective measures to make sure that a critical vulnerability won’t remain unattended.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Force update: An update process will be tried multiple times until it can be assumed development of a theme or plugin is abandoned. You will be notified during these steps.\u003C\u002Fli>\n\u003Cli>Quarantine: When a plugin or theme can’t be updated to solve a vulnerability, Really Simple Security can quarantine the plugin.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Advanced Site Hardening\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Choose a custom login URL\u003C\u002Fli>\n\u003Cli>Automated File Permissions check and fixer\u003C\u002Fli>\n\u003Cli>Rename and randomize your database prefix\u003C\u002Fli>\n\u003Cli>Change the debug.log file location to a non-public folder\u003C\u002Fli>\n\u003Cli>Disable application passwords\u003C\u002Fli>\n\u003Cli>Control admin creation\u003C\u002Fli>\n\u003Cli>Disable HTTP methods, reducing HTTP requests\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Login Protection\u003C\u002Fh4>\n\u003Cp>Secure your website’s login process and user accounts with powerful security measures.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Two-Step verification (Email login)\u003C\u002Fli>\n\u003Cli>2FA (two factor authentication) with TOTP\u003C\u002Fli>\n\u003Cli>Passwordless login with passkey login\u003C\u002Fli>\n\u003Cli>Enforce strong passwords and frequent password change\u003C\u002Fli>\n\u003Cli>Limit Login Attempts\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>With Limit Login Attempts you can configure a threshold to temporarily or permanently block IP addresses or (non-existing) usernames. You can also throw a CAPTCHA after a failed login (hCaptcha or Google reCaptcha)\u003C\u002Fp>\n\u003Ch4>Access Control\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Restrict access to your site for specific regions.\u003C\u002Fli>\n\u003Cli>Add specific IP addresses or IP ranges to the Blocklist or Allowlist.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Useful Links\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Freally-simple-ssl.com\u002Fknowledge-base-overview\u002F\" rel=\"nofollow ugc\">Documentation\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Freally-simple-ssl.com\u002Fdefinitions\u002F\" rel=\"nofollow ugc\">Security Definitions\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Ftranslate.wordpress.org\u002Fprojects\u002Fwp-plugins\u002Freally-simple-ssl\" rel=\"nofollow ugc\">Translate Really Simple Security\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002FReally-Simple-Plugins\u002Freally-simple-ssl\u002Fissues\" rel=\"nofollow ugc\">Issues & pull requests\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002FReally-Simple-Plugins\u002Freally-simple-ssl\u002Flabels\u002Ffeature%20request\" rel=\"nofollow ugc\">Feature requests\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Love Really Simple Security?\u003C\u002Fh3>\n\u003Cp>If you want to support the continuing development of this plugin, please consider buying \u003Ca href=\"https:\u002F\u002Fwww.really-simple-ssl.com\u002Fpro\u002F\" rel=\"nofollow ugc\">Really Simple Security Pro\u003C\u002Fa>, which includes some excellent security features and premium support.\u003C\u002Fp>\n\u003Ch3>About Really Simple Plugins\u003C\u002Fh3>\n\u003Cp>Our mission is to make complex WordPress requirements really easy. Really Simple Security is developed by \u003Ca href=\"https:\u002F\u002Fwww.really-simple-ssl.com\u002Fabout-us\" rel=\"nofollow ugc\">Really Simple Plugins\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>For generating SSL certificates, Really Simple Security uses the \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Ffbett\u002Fle-acme2-php\u002F\" rel=\"nofollow ugc\">le acme2 PHP\u003C\u002Fa> Let’s Encrypt client library, thanks to ‘fbett’ for providing it. Vulnerability Detection uses WP Vulnerability, an open-source initiative by Javier Casares. Want to join as a collaborator? We’re on \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Freally-simple-plugins\u002Freally-simple-ssl\" rel=\"nofollow ugc\">GitHub\u003C\u002Fa> as well!\u003C\u002Fp>\n","Easily improve site security with WordPress Hardening, Two-Factor Authentication (2FA), Login Protection, Vulnerability Detection and SSL certificate.",3000000,214784760,98,8850,"2026-07-06T08:04:00.000Z","6.6",[19,87,21,22,88],"https","vulnerabilities","https:\u002F\u002Freally-simple-ssl.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Freally-simple-ssl.9.6.1.zip",95,5,"2026-06-03 00:00:00",{"slug":95,"name":96,"version":97,"author":98,"author_profile":99,"description":100,"short_description":101,"active_installs":102,"downloaded":103,"rating":35,"num_ratings":104,"last_updated":105,"tested_up_to":15,"requires_at_least":106,"requires_php":67,"tags":107,"homepage":110,"download_link":111,"security_score":112,"vuln_count":113,"unpatched_count":13,"last_vuln_date":114,"fetched_at":28},"wp-2fa","WP 2FA – Two-factor authentication for WordPress","4.1.0","Melapress","https:\u002F\u002Fprofiles.wordpress.org\u002Fmelapress\u002F","\u003Ch3>A free and easy-to-use two-factor authentication plugin for WordPress\u003C\u002Fh3>\n\u003Cp>Add an extra layer of security to your WordPress website login and protect your users. Enable two-factor authentication (2FA), the best protection against password leaks, automated password guessing, and brute force attacks.\u003C\u002Fp>\n\u003Cp>Use the WP 2FA plugin to enable two-factor authentication for your WordPress administrator, enforce 2FA for all your website users, or for users with specific roles. This plugin is very easy to use; everything can be configured via wizards with clear instructions, so even non-technical users can set up 2FA without requiring technical assistance.\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FvRlX_NNGeFo?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fmelapress.com\u002Fwordpress-2fa\u002Ffeatures\u002F?utm_source=wp+repo&utm_medium=repo+link&utm_campaign=wordpress_org&utm_content=wp2fa\" rel=\"nofollow ugc\">Features\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fmelapress.com\u002Fsupport\u002Fkb\u002Fwp-2fa-plugin-getting-started\u002F?utm_source=wp+repo&utm_medium=repo+link&utm_campaign=wordpress_org&utm_content=wp2fa\" rel=\"nofollow ugc\">Getting Started\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fmelapress.com\u002Fwordpress-2fa\u002Fpricing\u002F?utm_source=wp+repo&utm_medium=repo+link&utm_campaign=wordpress_org&utm_content=wp2fa\" rel=\"nofollow ugc\">Get the Premium!\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>🔒 WP 2FA key plugin features and capabilities\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Passkeys support\u003C\u002Fstrong> for passwordless logins   \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Free two-factor authentication (2FA)\u003C\u002Fstrong> for all users  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multiple 2FA methods\u003C\u002Fstrong> supported, including authenticator app (TOTP) and code over email  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Developer API\u003C\u002Fstrong> to integrate any alternative 2FA method (WhatsApp, OTP Token, etc.)  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Universal 2FA app support\u003C\u002Fstrong> – works with Google Authenticator, Authy, and any TOTP-compatible app  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Backup codes\u003C\u002Fstrong> (16 digits) for recovery access  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Wizard-driven setup\u003C\u002Fstrong> – no technical knowledge required  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>2FA policies\u003C\u002Fstrong> to enforce setup with grace periods or instant activation  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>REST API endpoints\u003C\u002Fstrong> for custom integrations and headless WordPress setups  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Dashboard-free setup\u003C\u002Fstrong> – users can configure 2FA without WP admin access  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Editable email templates\u003C\u002Fstrong> for full customization  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Much more!\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>💎 Upgrade to WP 2FA Premium and get even more benefits\u003C\u002Fh3>\n\u003Cp>The premium version of WP 2FA comes bundled with even more features to take your WordPress website login security to the next level.\u003C\u002Fp>\n\u003Cp>With the premium edition of WP 2FA, you get more 2FA methods, 1-click integration with WooCommerce, trusted devices feature, extensive white labeling capabilities, and much more!\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fmelapress.com\u002Fwordpress-2fa\u002Fpricing\u002F?utm_source=wp+repo&utm_medium=repo+link&utm_campaign=wordpress_org&utm_content=wp2fa\" rel=\"nofollow ugc\">Check out WP 2FA Premium!\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Premium features list\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Everything in the free version\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Full white labeling capabilities\u003C\u002Fstrong> to change all text and visuals in the wizards, emails, SMS, and 2FA pages\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Support for multiple passkeys per user\u003C\u002Fstrong> for flexible passwordless logins\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Zero-setup email 2FA\u003C\u002Fstrong> that automatically enrolls users without manual configuration\u003C\u002Fli>\n\u003Cli>\u003Cstrong>YubiKey hardware key support\u003C\u002Fstrong> for enterprise-grade security\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Additional 2FA methods\u003C\u002Fstrong> such as SMS, email link, and more\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Trusted devices\u003C\u002Fstrong> so users can log in without 2FA for a configured period\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Require 2FA on password reset\u003C\u002Fstrong> to strengthen account protection\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Allow next user login without 2FA\u003C\u002Fstrong> to help recover accounts locked out of authentication\u003C\u002Fli>\n\u003Cli>\u003Cstrong>One-click WooCommerce integration\u003C\u002Fstrong> to enable 2FA for customers and store admins\u003C\u002Fli>\n\u003Cli>\u003Cstrong>And much more!\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Refer to the \u003Ca href=\"https:\u002F\u002Fmelapress.com\u002Fwordpress-2fa\u002Ffeatures\u002F?utm_source=wp+repo&utm_medium=repo+link&utm_campaign=wordpress_org&utm_content=wp2fa\" rel=\"nofollow ugc\">WP 2FA plugin features and benefits page\u003C\u002Fa> to learn more about the benefits of upgrading to WP 2FA Premium.\u003C\u002Fp>\n\u003Ch3>🛠️ Free and premium support\u003C\u002Fh3>\n\u003Cp>Support for the free edition of WP 2FA is free on the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fwp-2fa\u002F\" rel=\"ugc\">WordPress support forums\u003C\u002Fa>. Premium world-class support via one-to-one email is available to the Premium users – \u003Ca href=\"https:\u002F\u002Fmelapress.com\u002Fwordpress-2fa\u002Fpricing\u002F?utm_source=wp+repo&utm_medium=repo+link&utm_campaign=wordpress_org&utm_content=wp2fa\" rel=\"nofollow ugc\">upgrade to premium\u003C\u002Fa> to benefit from email support.\u003C\u002Fp>\n\u003Cp>For any other queries, feedback, or if you simply want to get in touch with us, please use our \u003Ca href=\"https:\u002F\u002Fmelapress.com\u002Fcontact\u002F?utm_source=wp+repo&utm_medium=repo+link&utm_campaign=wordpress_org&utm_content=wp2fa\" rel=\"nofollow ugc\">contact form\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>MAINTAINED & SUPPORTED BY MELAPRESS\u003C\u002Fh4>\n\u003Cp>Melapress develops high-quality WordPress management and security plugins, such as Melapress Login Security, Melapress Role Editor, and WP Activity Log; the #1 user-rated activity log plugin for WordPress.\u003C\u002Fp>\n\u003Cp>Browse our list of \u003Ca href=\"https:\u002F\u002Fmelapress.com\u002F?utm_source=wp+repo&utm_medium=repo+link&utm_campaign=wordpress_org&utm_content=wp2fa\" rel=\"nofollow ugc\">WordPress security and administration plugins\u003C\u002Fa> to see how our plugins can help you better manage and improve the security and administration of your WordPress websites and users.\u003C\u002Fp>\n\u003Ch3>Installing WP 2FA\u003C\u002Fh3>\n\u003Ch3>From within WordPress\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Navigate to ‘Plugins’ > ‘Add New’\u003C\u002Fli>\n\u003Cli>Search for ‘WP 2FA’\u003C\u002Fli>\n\u003Cli>Install & activate WP 2FA from your Plugins page\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Manually\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Download the plugin from the WordPress plugins repository\u003C\u002Fli>\n\u003Cli>Unzip the zip file and upload the folder to the ‘\u002Fwp-content\u002Fplugins\u002F directory’\u003C\u002Fli>\n\u003Cli>Activate the WP 2FA plugin through the ‘Plugins’ menu in WordPress\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>As featured on:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.wpbeginner.com\u002Fplugins\u002Fhow-to-add-two-factor-authentication-for-wordpress\u002F\" rel=\"nofollow ugc\">WP Beginner\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.isitwp.com\u002Fbest-wordpress-security-authentication-plugins\u002F\" rel=\"nofollow ugc\">IsitWP\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwpastra.com\u002Ftwo-factor-authentication-wordpress\u002F\" rel=\"nofollow ugc\">WP Astra\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmainwp.com\u002Fhow-to-use-the-wp-2fa-plugin-on-your-child-sites\u002F\" rel=\"nofollow ugc\">MainWP\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.fixrunner.com\u002Fwordpress-two-factor-authentication\u002F\" rel=\"nofollow ugc\">FixRunner\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.inmotionhosting.com\u002Fsupport\u002Fedu\u002Fwordpress\u002Fplugins\u002Fwp-2fa\u002F\" rel=\"nofollow ugc\">Inmotion Hosting\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwpmarmite.com\u002Fen\u002Fwordpress-two-factor-authentication\u002F\" rel=\"nofollow ugc\">WP Marmite\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","Get better WordPress login security; add two-factor authentication (2FA) for all your users with this easy-to-use plugin.",100000,1721646,173,"2026-07-21T09:48:00.000Z","5.5",[108,19,52,53,109],"2-factor-authentication","wordpress-authentication","https:\u002F\u002Fmelapress.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-2fa.4.1.0.zip",96,9,"2025-11-03 00:00:00",{"slug":116,"name":117,"version":118,"author":119,"author_profile":120,"description":121,"short_description":122,"active_installs":123,"downloaded":124,"rating":125,"num_ratings":126,"last_updated":127,"tested_up_to":15,"requires_at_least":128,"requires_php":129,"tags":130,"homepage":54,"download_link":133,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"wordfence-login-security","Wordfence Login Security","1.1.16","wfryan","https:\u002F\u002Fprofiles.wordpress.org\u002Fwfryan\u002F","\u003Ch3>WORDFENCE LOGIN SECURITY\u003C\u002Fh3>\n\u003Cp>Wordfence Login Security contains a subset of the functionality found in the full Wordfence plugin: Two-factor Authentication, XML-RPC Protection, and Login Page CAPTCHA.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>This plugin is being discontinued on or around July 1, 2026.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>All of its features are already included in the main Wordfence plugin, which is also available to use for free. We recommend installing Wordfence to continue receiving updates, security improvements, and full functionality.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwordfence\u002F\" rel=\"ugc\">Install the full Wordfence plugin\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>TWO-FACTOR AUTHENTICATION\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Two-factor authentication (2FA), one of the most secure forms of remote system authentication available.\u003C\u002Fli>\n\u003Cli>Use any TOTP-based authenticator app or service like Google Authenticator, Authy, 1Password or FreeOTP.\u003C\u002Fli>\n\u003Cli>Enable 2FA for any WordPress user role.\u003C\u002Fli>\n\u003Cli>Completely free to use, no limits or restrictions of any kind.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>LOGIN PAGE CAPTCHA\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Easily enable Google ReCAPTCHA v3 on your login and registration pages.\u003C\u002Fli>\n\u003Cli>Stops bots from logging in without inconveniencing your site visitors.\u003C\u002Fli>\n\u003Cli>Robust protection against password guessing and credential stuffing attacks distributed across large IP pools\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>XML-RPC PROTECTION\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>XML-RPC is the biggest target for WordPress attacks, but is often overlooked.\u003C\u002Fli>\n\u003Cli>Protect XML-RPC with 2FA or disable it altogether if it’s not needed.\u003C\u002Fli>\n\u003C\u002Ful>\n","Secure your website with Wordfence Login Security, providing two-factor authentication, login and registration CAPTCHA, and XML-RPC protection.",60000,1329360,78,26,"2026-04-29T15:29:00.000Z","4.7","7.0",[19,131,132,21,53],"captcha","login-security","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwordfence-login-security.1.1.16.zip",{"error":135,"url":136,"statusCode":137,"statusMessage":138,"message":138},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fsuper-duper-two-factor-login\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":140,"versions":141},6,[142,148,155,162,169,176],{"version":6,"download_url":25,"svn_tag_url":143,"released_at":27,"has_diff":144,"diff_files_changed":145,"diff_lines":27,"trac_diff_url":146,"vulnerabilities":147,"is_current":135},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsuper-duper-two-factor-login\u002Ftags\u002F2.5.14\u002F",false,[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsuper-duper-two-factor-login%2Ftags%2F2.5.13&new_path=%2Fsuper-duper-two-factor-login%2Ftags%2F2.5.14",[],{"version":149,"download_url":150,"svn_tag_url":151,"released_at":27,"has_diff":144,"diff_files_changed":152,"diff_lines":27,"trac_diff_url":153,"vulnerabilities":154,"is_current":144},"2.5.13","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsuper-duper-two-factor-login.2.5.13.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsuper-duper-two-factor-login\u002Ftags\u002F2.5.13\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsuper-duper-two-factor-login%2Ftags%2F2.5.12&new_path=%2Fsuper-duper-two-factor-login%2Ftags%2F2.5.13",[],{"version":156,"download_url":157,"svn_tag_url":158,"released_at":27,"has_diff":144,"diff_files_changed":159,"diff_lines":27,"trac_diff_url":160,"vulnerabilities":161,"is_current":144},"2.5.12","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsuper-duper-two-factor-login.2.5.12.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsuper-duper-two-factor-login\u002Ftags\u002F2.5.12\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsuper-duper-two-factor-login%2Ftags%2F2.5.11&new_path=%2Fsuper-duper-two-factor-login%2Ftags%2F2.5.12",[],{"version":163,"download_url":164,"svn_tag_url":165,"released_at":27,"has_diff":144,"diff_files_changed":166,"diff_lines":27,"trac_diff_url":167,"vulnerabilities":168,"is_current":144},"2.5.11","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsuper-duper-two-factor-login.2.5.11.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsuper-duper-two-factor-login\u002Ftags\u002F2.5.11\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsuper-duper-two-factor-login%2Ftags%2F2.5.9&new_path=%2Fsuper-duper-two-factor-login%2Ftags%2F2.5.11",[],{"version":170,"download_url":171,"svn_tag_url":172,"released_at":27,"has_diff":144,"diff_files_changed":173,"diff_lines":27,"trac_diff_url":174,"vulnerabilities":175,"is_current":144},"2.5.9","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsuper-duper-two-factor-login.2.5.9.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsuper-duper-two-factor-login\u002Ftags\u002F2.5.9\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsuper-duper-two-factor-login%2Ftags%2F2.5.5&new_path=%2Fsuper-duper-two-factor-login%2Ftags%2F2.5.9",[],{"version":177,"download_url":178,"svn_tag_url":179,"released_at":27,"has_diff":144,"diff_files_changed":180,"diff_lines":27,"trac_diff_url":27,"vulnerabilities":181,"is_current":144},"2.5.5","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsuper-duper-two-factor-login.2.5.5.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsuper-duper-two-factor-login\u002Ftags\u002F2.5.5\u002F",[],[]]