Frequently Asked Questions

Answers to common questions about PluginShield, accounts, security, reporting, and support.

General

+What is PluginShield.io?
PluginShield is a subscription-based SaaS platform that helps organizations inventory, track, and report on WordPress plugins and themes across multiple sites and projects—focused on security posture, risk, and governance.
+Who is PluginShield built for?
PluginShield is built for WordPress agencies, enterprises, and security/audit teams who need centralized visibility into plugin and theme risk across many sites and environments.
+How is PluginShield different from a WordPress security plugin?
Traditional security plugins run inside a single WordPress site. PluginShield is an organization-level platform that helps you manage plugin and theme dependencies across many sites and projects—like “dependency security” for WordPress.

Accounts and Organizations

+What is an Organization in PluginShield?
An Organization represents a customer account (a company or client). It contains projects, users, permissions, and billing.
+What is a Project?
Projects are logical groupings of sites (for example by client, brand, or environment). Projects are the primary boundary for reporting and risk visibility.
+Can multiple users collaborate in one organization?
Yes. You can add team members to an organization and assign roles/permissions so the right people can view, manage, and export reports.

Plugin Inventory

+What does PluginShield track for each plugin or theme?
We track the plugin/theme name and slug, source (catalog vs custom), installed versions per project/site, latest available version, and supporting metadata for reporting and risk analysis.
+Do you support custom or private plugins?
Yes. Custom plugins are supported and treated as first-class dependencies. We assign unique internal slugs so custom plugins do not collide with official WordPress catalog slugs.
+Can I identify version drift across sites?
Yes. PluginShield is designed to surface version drift—where the same plugin is running different versions across projects/sites—so you can quickly spot inconsistent patch levels.

Security and Vulnerabilities

+Does PluginShield show known vulnerabilities (CVEs) for plugins?
Vulnerability correlation is part of the platform’s security focus. As vulnerability data is wired in, PluginShield will map CVEs to affected plugin versions and highlight severity and fixed-in versions.
+How does PluginShield help me prioritize risk?
We focus on actionable signals: outdated plugins, known vulnerabilities, version drift, and organization-level exposure—so you can prioritize the highest-impact remediation first.
+Will I get alerts when new vulnerabilities are disclosed?
Alerting and notifications are part of the roadmap as PluginShield evolves from inventory to continuous monitoring and security alerting.

Reporting and Compliance

+Can I export reports for audits or clients?
Yes. PluginShield supports exportable reports (PDF / Excel) designed to be audit-friendly and easy to share with clients and stakeholders.
+Do you track historical changes?
Yes. PluginShield is designed to support audit-friendly history—what changed, when, and where—so you can provide evidence over time.
+Which compliance frameworks does PluginShield support?
PluginShield is built to support common governance and audit workflows (e.g., SOC 2, ISO 27001) and can be adapted to internal compliance requirements through reporting and policy-driven visibility.

Billing

+Do you offer a free plan?
We offer a free tier for evaluation and small teams, with paid plans for advanced reporting, higher limits, and security features.
+Can I cancel anytime?
Yes. You can manage your subscription from your account portal. If you need help, contact support and we’ll get you sorted.

Support

+How do I contact support?
Use the Contact page. For security issues, include reproduction steps, timestamps, and any relevant project/site details.
+Do you offer onboarding help for larger organizations?
Yes. If you’re managing many sites or preparing for an audit, we can help you structure organizations and projects correctly and get clean reporting fast.