We apply the fixes directly to your WordPress site and confirm with a follow-up scan.
Server configuration fixes via .htaccess — no WordPress admin access needed.
Everything in Simple, plus WordPress theme and plugin changes requiring wp-admin or SSH.
Complete security hardening — all fixes applied, vulnerable plugins updated, full audit.
When a vulnerable plugin has no patch available, we migrate your site to a safe alternative — install, configure, verify, remove the old plugin.
Scope: simple plugin replacements only. Plugins with custom configuration (membership, custom fields, etc.) get a free 15-min review for a custom quote.
After payment we'll contact you within 2 business days to request site access. Turnaround varies by tier (see each card). No credentials are collected before payment.
Refund policy:if a post-fix re-scan doesn't show the issue resolved, we refund in full.