Description
WebKernelAI is a Technical SEO and Website Security platform. The WebKernelAI Security plugin securely connects WordPress websites with the WebKernelAI dashboard for SEO synchronization, security policy management, integrity monitoring, and advanced site controls.
Official Website:
https://webkernelai.com
Security Plugin:
https://webkernelai.com/plugins/security/
Documentation:
https://webkernelai.com/docs/security/
WebKernelAI helps developers, agencies, businesses, and production websites improve:
- Technical SEO
- Website Security
- Crawl Intelligence
- JavaScript Vulnerability Detection
- Website Malware Detection
- Security Header Analysis
- SEO Metadata Management
- Content Security Policy (CSP) Management
Core Features
- secure token-authenticated REST API endpoints
- signed request validation using HMAC
- nonce replay protection
- timestamp freshness validation
- trusted-origin request validation
- endpoint-level capability restrictions
- authentication and endpoint rate limiting
- file integrity inventory generation using SHA-256 hashing
- centralized SEO metadata synchronization
- canonical URL synchronization
- OpenGraph metadata synchronization
- robots.txt management
- llms.txt controls
- advanced Content Security Policy (CSP) management
- security header management
- production lock profile support
- security policy rollback history
- read-only security overview endpoint
- integration with WebKernelAI Technical SEO Audit and security analysis tools
Official WebKernelAI Platform
WebKernelAI provides integrated Technical SEO and Website Security tools for WordPress websites and modern web applications.
Platform capabilities include:
- Technical SEO Audit
- Crawl Intelligence
- JavaScript Vulnerability Scanner
- Website Malware Scanner
- Security Header Analysis
- SEO Metadata Synchronization
- Content Security Policy Management
- Website Security Monitoring
Official platform:
https://webkernelai.com
Security Architecture
WebKernelAI Security includes multiple protection layers:
- HMAC request signing
- nonce replay protection
- timestamp freshness validation
- trusted-origin enforcement
- endpoint-level permission controls
- rate limiting protections
- production lock profile
- rollback-safe policy management
The plugin is designed for secure production environments and centralized security operations.
File Integrity Monitoring
The plugin supports secure integrity inventory generation for supported scan modes.
Supported integrity metadata includes:
- file path
- SHA-256 hash
- file size
- modification timestamp
Raw file contents are not transmitted during standard integrity operations.
SEO & Technical Controls
The plugin supports centralized Technical SEO management from the WebKernelAI dashboard.
Supported controls include:
- meta title synchronization
- meta description synchronization
- canonical URL synchronization
- OpenGraph metadata synchronization
- robots directives
- robots.txt management
- llms.txt management
- archive indexing controls
External Services
This plugin connects to WebKernelAI cloud services.
Official platform:
https://webkernelai.com
Data may be transmitted to:
- https://webkernelai.com
- your configured WebKernelAI dashboard/backend endpoint
Data transmitted may include:
- authenticated API requests
- integrity inventory metadata
- SEO synchronization payloads
- security policy payloads
- selected configuration settings
Data is transmitted:
- when connecting a website to WebKernelAI
- when administrators trigger dashboard operations
- during scan, synchronization, or policy deployment operations
Terms of Service:
https://webkernelai.com/terms
Privacy Policy:
https://webkernelai.com/privacy
Installation
- Upload the plugin folder to
/wp-content/plugins/ - Activate the plugin through WordPress admin
- Open Settings WebKernelAI Security
- Generate a secure site token
- Connect your website with the WebKernelAI dashboard
FAQ
-
Does the plugin send file contents to WebKernelAI?
-
No. The plugin sends integrity metadata and hashes only for supported scan modes.
-
Can I disable CSP or security headers?
-
Yes. Security headers and CSP policies can be managed through the WebKernelAI dashboard.
-
Can I manually customize CSP rules?
-
Yes. Advanced CSP editing and enforcement controls are supported.
-
Does the plugin support replay attack protection?
-
Yes. Signed requests include nonce replay protection and timestamp freshness validation.
-
Can I roll back security policy changes?
-
Yes. Security policy versioning supports rollback to previous configurations.
-
Does the plugin support Technical SEO workflows?
-
Yes. The plugin integrates directly with WebKernelAI Technical SEO Audit and metadata synchronization systems.
Reviews
There are no reviews for this plugin.
Contributors and Developers
“WebKernelAI Security” is open source software. The following people have contributed to this plugin.
ContributorsTranslate “WebKernelAI Security” into your language.
Interested in development?
Browse the code, check out the SVN repository, or subscribe to the development log by RSS.
Change Log
1.0.3
- Added REST route
GET /webkernelai/v1/security-overview - Added improved active theme update detection compatibility
1.0.2
- Added advanced security mode with HMAC request validation
- Added nonce replay protection
- Added trusted-origin validation
- Added endpoint rate limiting
- Added production lock profile support
- Added policy rollback history
- Added advanced CSP management support
1.0.1
- Added WordPress.org compliance improvements
- Added unique option keys
- Added legacy option migration support
1.0.0
- Initial public release



