Security

Watching the water while you sleep

Vulnerability feeds, file checksums, uptime probes and nightly backups run across all 3,000 sites, not just the ones you remembered to check. Along the way I have reported 20+ plugin vulnerabilities to their authors and uncovered three backdoor operations hiding in the WordPress plugin repository.

daily

Vulnerability scanning

Every plugin, theme and core version checked against live vulnerability feeds. Affected sites are identified fleet-wide in minutes.

nightly

File checksums

Core, plugin and theme files verified against WordPress.org. Anything modified gets flagged and diffed.

nightly

Offsite backups

Full site and database snapshots to redundant Backblaze B2 storage, retained long-term and restorable per file.

always

Uptime monitoring

Global probes on every production environment. Downtime is investigated before the first client notices.

always

HTTPS everywhere

Certificates issued, renewed and enforced automatically across every domain and subdomain.

on event

Fleet-wide patching

When a serious vulnerability lands, the patch deploys to every affected site in parallel, not one support ticket at a time.