Try for free Log in

CloudFilt on WordPress

The official CloudFilt plugin protects your WordPress site from the front and the back end: install it from your admin, paste two keys, and bad bots stop at the door.

Free up to 3,000 requests per month and per site. No credit card required.

CMS plugin FREE

In the box

1×
administrator account on your WordPress
2×
keys, given by your CloudFilt dashboard
0×
line of code

Fitting instructions

4 steps, from sign-up to the first verdict.

  1. Create your free account and add your website

    CloudFilt gives you a public key and a private key, free up to 3,000 requests per month.

  2. Install the plugin

    In your WordPress admin, Plugins › Add New: search for CloudFilt, click Install Now, then Activate.

  3. Paste your keys

    Open the CloudFilt settings of the plugin and paste the public and the private key.

  4. Watch the verdicts

    Allowed, challenged and blocked requests show up in your live journal within the minute.

    Allowed Challenge Blocked

How it works

The CloudFilt WordPress plugin works on both sides of each visit. In the browser, the front script spots automation: headless browsers, WebDriver, visitors that never run JavaScript. On your server, the back end check sends the IP, the URL and the user agent of the request to CloudFilt before the page is built.

Both signals meet in one verdict: real visitors go through, doubtful ones get a captcha, bad bots are blocked. Search engine crawlers are verified by reverse DNS and let through, so your SEO is safe.

Every verdict lands in your live journal with its reason, and your rules (countries, URLs, anti-flood thresholds) are edited from the CloudFilt dashboard: no need to touch WordPress again.

What you get

  • Front and back end analysis
  • Two keys to paste, no code to write
  • Captcha for doubtful visitors, not a hard block
  • Search engine crawlers verified and let through

From request to verdict

Once WordPress is plugged in, each request is scored from the front and the back end, then allowed, challenged or blocked.

  1. Visitor

    A browser, a script or a bot sends a request to your website or API.

  2. Nearest point of presence

    The CDN WAF, or your plugin, hands the request to the closest point of presence.

  3. Signals

    IP reputation, behaviour, rate, country and your own rules, weighed in real time.

  4. Verdict

    • Allowed to your site
    • Challenge captcha first
    • Blocked never reaches you

Other integration options

All integrations