WP Security Audit Log

説明

THE MOST COMPREHENSIVE & EASY TO USE WORDPRESS ACTIVITY LOG PLUGIN

Keep an activity log of everything that happens on your WordPress and WordPress multisite with the WP Security Audit Log plugin to:

  • Ensure user productivity
  • Ease troubleshooting
  • Know exactly what all your users are doing
  • Better manage & organize your WordPress site
  • Easily spot suspicious behavior before there are security problems.

WP Security Audit Log is the most comprehensive real time user activity and monitoring log plugin. It helps thousands of WordPress administrators and security professionals keep an eye on what is happening on their websites. It is also the most highly rated WordPress activity log plugin and have been featured on popular sites such as GoDaddy, ManageWP, Pagely, Shout Me Loud and WPKube.

Note: All WordPress logging functionality is FREE. Features such as reports, email notifications & search are available in the Premium Edition.

Maintained & Supported by WP White Security

WP White Security builds high-quality niche WordPress security & admin plugins such as Password Policy Manager for WordPress, a plugin with which you can ensure all your users use strong passwords.

Browse our list of WordPress plugins that can help you better manage and improve the security of your WordPress websites and users.

WordPress Changes & Details the Plugin Keeps a Log Of

As a comprehensive & complete WordPress activity log solution WP Security Audit Log does not just tell you that a post, a user profile, or an object was updated. It keeps a log of what was changed within the post, profile or object.

Below is a summary of the changes that the plugin can keep a record of:

  • Post, Page and Custom Post Type changes such as status, content changes, title, URL, date and custom field changes

  • Tags and Categories changes such as creating, modifying or deleting them, and adding or removing them from posts

  • Widgets and Menus changes such as creating, modifying or deleting them

  • User changes such as user created or registered, deleted or added to a site on multisite network

  • User profile changes such as password, email, display name and role changes

  • User activity such as login, logout, failed logins and terminating other sessions

  • WordPress core and settings changes such as installed updates, permalinks, default role, URL and other site-wide changes

  • WordPress multisite network changes such as adding, deleting or archiving sites, adding or removing users from sites etc (activity logs for multisite networks).

  • Plugins and Themes changes such as installing, activating, deactivating, uninstalling and updating them

  • WordPress database changes such as when a plugin adds or removes a table

  • Changes on WooCommerce Stores & Products, Yoast SEO, Advanced Custom Fields (ACF), MainWP and other popular WordPress plugins.

  • WordPress site file changes such as new files are added, or existing ones are modified or deleted.

For every event that the plugin keeps a log of it also reports the:

  • Date & time (and milliseconds) of when it happened,
  • User & role of the user who did the change,
  • Source IP address from where the change happened.

Refer to WordPress Activity Log Events for a complete list of all the changes the WP Security Audit Log can keep a record of.

Extend the Functionality of the WP Security Audit Log Plugin

Upgrade to WP Security Audit Log Premium to:

  • See who is logged,
  • See what everyone is doing in real time,
  • Log off any user with just a click,
  • Generate HTML and CSV reports,
  • Export the activity log in CSV (ideal for integrations),
  • Get notified via email of important changes,
  • Get instant SMS message notifications of critical site changes,
  • Search the activity log using text-based searches,
  • Use built-in filters to fine tune the searches,
  • Store activity log in an external database to improve security,
  • Mirror the WordPress activity logs to Slack, Papertrail, Syslog and other central log management and collaboration solutions,
  • Configure archiving and mirroring of logs.

See our premium features page for more detailed information.

Free and Premium Support

Support for the WP Security Audit Log plugin on the WordPress forums is free.

Premium world-class support is available via email to all WP Security Audit Log Premium customers.

Note: paid customers support is always given priority over free support. Paid customers support is provided via one-to-one email and over the phone. Upgrade to Premium to benefit from priority support.

Other Noteworthy Features

WP Security Audit Log plugin also has a number of features that make WordPress and WordPress multisite monitoring and auditing easier, such as:

  • Built-in support for reverse proxies and web application firewalls
  • Full WordPress multisite support
  • Easily create your custom alerts to monitor additional functionality
  • Developer tools including the logging of all HTTP GET and POST requests
  • Integration with WhatIsMyIpAddress.com so you can get all information about an IP address with just a mouse click
  • Limit who can view the WordPress activity log by either users or roles
  • Limit who can manage the plugin by either users or roles
  • Configurable WordPress dashboard widget highlighting the most recent critical activity
  • Configurable WordPress security audit trail data retention
  • User avatar is shown in the alerts for better recognizability
  • Enable or disable any security alerts
  • and much more…

Refer to the WordPress activity log plugin datasheet for a complete list of features.

As Featured On:

WordPress Security Audit Log in your Language!

We need help translating the plugin and the WordPress Security Alerts. Please visit the WordPress Translate Project to translate the plugin and drop us an email on support@wpwhitesecurity.com to get mentioned in the list of translators below.

Activity Log add-ons for third party plugins

  • Activity Log for MainWP: This MainWP extension allows you to keep a log of MainWP network changes and to view the activity logs of all child sites from one central location – the MainWP dashboard.
  • Activity Log add-on for WPForms: Install this add-on with the WP Security Audit Log to keep a log of changes in WPForms plugin, forms, form files, entries (leads) and more.

Related Links and Documentation

Install WP Security Audit Log from within WordPress

  1. Visit ‘Plugins > Add New’
  2. Search for ‘WP Security Audit Log’
  3. Install and activate the WP Security Audit Log plugin
  4. Allow or skip diagnostic tracking

Install WP Security Audit Log manually

  1. Upload the wp-security-audit-log directory to the /wp-content/plugins/ directory
  2. Activate the WP Security Audit Log plugin from the ‘Plugins’ menu in WordPress
  3. Allow or skip diagnostic tracking

スクリーンショット

  • The WordPress activity logs from where the site administrator can see all the user and site changes.
  • See who is logged in to your WordPress and manage users sessions with Users Sessions Management
  • The plugin settings from where site administrator can configure generic plugin settings such as reverse proxy support, who can manage the plugin etc.
  • The WordPress audit trail settings from where you can configure automatic pruning of alerts, which timestamp should be used, how many 404 requests should be logged and more.
  • Configuring WordPress email and SMS alerts with the Email & SMS Notifications module
  • Search in the WordPress security audit log with the use filters to fine tune the search results.
  • The Enable/Disable events section from where Administrators can disable or enable activity log events.
  • The Audit Log Viewer of a Super Admin in a WordPress multisite network installation with the Site selection drop down menu.
  • WP Security Audit Log is integrated with the built-in revision system of WordPress, thus allowing you to see what content changes users make on your WordPress posts, pages and custom post types. For more information read Keep Record of All WordPress Content Changes
  • Mirror the WordPress activity log to an external solution such as Syslog or Papertrail to centralize logging, ensure logs are always available and cannot be tampered with in the unfortunate case of a hack attack.

FAQ

Support and Documentation

Please refer to our Support & Documentation pages for all the technical information and support documentation on the WP Security Audit Log plugin.

評価

2020年3月31日
I needed a way to track when users were logged in multiple times from different locations, and this worked well. There's clearly a lot of development work put in, and it's really flexible. Super easy to use, too.
2020年3月30日
If you need to know what is going on under the hood - this is your audit and logging plugin. Tracks everything and more including Woocommerce & Co.
2020年3月12日
I started with just wanting to see who was logged onto the website, mainly for development purposes. Then decided I would like to see who was doing what for the purpose of maintenance and updates. That all works fantastic. What I was not prepared for was to find out that my website was under attack. Had I not installed this plugin I would never have known that until too late. The support on this plugin has been really good. I have now installed a WAF and security plugin.
2020年3月3日
It is certainly the best plugin developed. Meets all my needs. The support is incredible and very kind. Congratulations.
2020年2月18日
We use this as the default logging tool across all our sites. It is full of features (I really like the ability to mirror the logs to a secondary location), the price is right, and the discounts for multiple sites make a lot of sense. We are now integrating it with Main WP to have a single point of control for all our sites. Oh, and support is fantastic. Got all our questions answered quickly.
267件のレビューをすべて表示

貢献者と開発者

WP Security Audit Log はオープンソースソフトウェアです。以下の人々がこのプラグインに貢献しています。

貢献者

“WP Security Audit Log” は2ロケールに翻訳されています。 翻訳者のみなさん、翻訳へのご協力ありがとうございます。

“WP Security Audit Log” をあなたの言語に翻訳しましょう。

開発に興味がありますか ?

コードを閲覧するか、SVN リポジトリをチェックするか、開発ログRSS で購読してみてください。

変更履歴

4.0.2 (2020-02-28)

  • Security fix

    • Added authentication check for the first-time install wizard. This addresses an edge case in which if the wizard was never completed by the user, unauthenticated users could run the wizard and give access to the plugin settings to WordPress users.
  • Improvements

    • Removed the setting / functionality to allow access to users with non-admin role to the plugin settings. Now users who require access to the plugin settings need to have the admin role.
    • Removed the “activity log view access” and the “exclude objects” steps from the install wizard. These are advanced settings.
    • Check the role of users trying to import settings file and deny if it does not have admin role.

Earlier versions

Please refer to the complete plugin changelog for more detailed information about what was new, improved and fixed in previous versions of the WP Security Audit Log plugin.