WordPress upload security

Scan files before they enter your WordPress media library

CypherScan scans WordPress uploads through a secure presigned workflow and can automatically block suspicious or malicious files.

WordPress.org distribution is coming soon.

Live workflow preview

WordPress upload decision

The integration sends the upload through CypherScan and receives a deterministic action before the file remains in the CMS workflow.

Protected pipeline
01
Presign
02
Upload
03
Scan
04
Verdict
Decision Engine
Upload evaluated before release
Decision secured
Action
BLOCK
Risk
CRITICAL
Confidence
HIGH
Why this decision
Malware indicator detected

The upload is stopped before it becomes available to editors, visitors, or downstream services.

Example: CypherScan evaluates the upload before it remains in the WordPress workflow.

Quick installation

1. Download the official plugin ZIP.

2. Open WordPress Admin → Plugins → Add New Plugin.

3. Upload the ZIP and activate CypherScan.

4. Open Settings → CypherScan.

5. Add your CypherScan API key and save the configuration.

What CypherScan catches

Malware indicators
Exposed API keys
JWT secrets
Suspicious payloads
Risky upload patterns

How it works

Step 1

Download and install the plugin

Step 2

Add your CypherScan API key

Step 3

Upload files normally

Step 4

Allow or block files based on the verdict

Plugin behavior

• Clean uploads are allowed.

• Suspicious or malicious uploads can be blocked.

• Fail Open and Fail Closed modes are supported.

• Files use CypherScan's presigned upload workflow.

Secure your WordPress media uploads

Download the plugin, add your CypherScan API key, and start scanning uploads before risky files reach production.