Website Security Activity Tracker
A comprehensive WordPress activity tracking plugin that logs user actions, detects suspicious activity, and enhances website security by monitoring all administrative and user activities.
by Umang Prajapati · github.com/umang48/security-activity-tracker · website
Install
No release zip yet. The repository archive installs, but the folder name will carry the branch suffix and updates will not flow:
wp plugin install https://github.com/umang48/security-activity-tracker/archive/refs/heads/main.zipA comprehensive WordPress activity tracking plugin that monitors user actions, detects suspicious activity, and enhances website security.
Description
Website Security Activity Tracker is a powerful security plugin that helps WordPress site administrators monitor and track all user activities on their websites. Keep your site secure by knowing exactly what happens on your WordPress installation at all times.
Key Features
- Comprehensive Activity Logging - Track all user actions including logins, post modifications, plugin changes, and more
- Suspicious Activity Detection - Automatic alerts for multiple failed login attempts and critical system changes
- User-Friendly Dashboard - Easy-to-use interface with filtering, search, and export capabilities
- Real-time Monitoring - Instant logging of activities as they happen
- Email Notifications - Get notified via email when suspicious activities are detected
- Export Functionality - Export activity logs to CSV for external analysis
- IP Address Tracking - Monitor activities by IP address to identify potential threats
- Severity Levels - Activities are categorized by severity (Low, Medium, High) for better prioritization
What Activities Are Tracked?
User Activities:
- User logins and logouts
- Failed login attempts
- New user registrations
- Profile updates
Content Activities:
- Post and page creation, updates, and deletion
- Comment additions and status changes
- Media uploads, edits, and deletions
System Activities:
- Plugin activations and deactivations
- Theme switches
- WordPress core updates
- Settings changes
- Widget and menu modifications
Security Features:
- Multiple failed login detection
- Plugin/theme change monitoring
- IP-based activity tracking
- Email alert system
- Configurable log retention
Why Use Website Security Activity Tracker?
- Enhanced Security - Detect unauthorized access attempts and suspicious activities
- Compliance - Maintain audit trails for regulatory compliance
- Troubleshooting - Quickly identify what changed before issues occurred
- User Management - Monitor user productivity and adherence to guidelines
- Peace of Mind - Know exactly what's happening on your website
Perfect For:
- Multi-user WordPress sites
- Business websites
- E-commerce stores
- Membership sites
- Agency-managed websites
- Any site requiring security monitoring
Installation
Automatic Installation
- Go to your WordPress admin dashboard
- Navigate to Plugins → Add New
- Search for "Website Security Activity Tracker"
- Click "Install Now" and then "Activate"
- Go to Activity Tracker in your admin menu to start monitoring
Manual Installation
- Download the plugin zip file
- Go to Plugins → Add New → Upload Plugin
- Choose the zip file and click "Install Now"
- Activate the plugin
- Go to Activity Tracker in your admin menu
After Installation
- Visit the Activity Tracker menu in your WordPress admin
- Configure settings under Activity Tracker → Settings
- Set up email notifications and tracking preferences
- Start monitoring your site's activity immediately
Frequently Asked Questions
Does this plugin affect site performance?
No, Website Security Activity Tracker is designed to be lightweight and runs efficiently in the background. It uses a separate database table for optimal performance.
Can I export the activity logs?
Yes, you can export all activity logs to CSV format for external analysis or record keeping.
How long are activity logs stored?
By default, logs are stored for 30 days, but you can configure the retention period in the settings from 1 to 365 days.
Will I be notified of suspicious activity?
Yes, the plugin can send email notifications for suspicious activities like multiple failed login attempts or critical system changes.
Can I filter the activity logs?
Yes, the plugin provides comprehensive filtering options including user, action type, date range, severity level, and search functionality.
Is this plugin GDPR compliant?
Yes, the plugin stores minimal user data and provides options to control data retention. IP addresses can be anonymized if required.
Does it work with multisite installations?
The current version is designed for single-site installations. Multisite support may be added in future versions.
Can I disable tracking for certain activities?
Yes, you can configure which types of activities to track in the plugin settings.
Screenshots
- Activity Logs Dashboard - View all site activities with filtering and search
- Statistics Overview - Quick stats on site activity and security alerts
- Settings Page - Configure tracking options and notification preferences
- Export Functionality - Export logs to CSV for external analysis
- Security Alerts - Email notifications for suspicious activities
Changelog
1.0.0
- Initial release
- Comprehensive activity tracking for all major WordPress actions
- User-friendly admin dashboard with filtering and search
- Email notifications for suspicious activity
- CSV export functionality
- Configurable settings for tracking preferences
- IP address and user agent logging
- Severity-based activity categorization
- Automatic log cleanup with configurable retention periods
Upgrade Notice
1.0.0
Initial release of Website Security Activity Tracker. Install now to start monitoring your WordPress site's security and user activities.
Support
For support, feature requests, or bug reports, please visit:
- Plugin Support Forum: https://wordpress.org/support/plugin/wp-security-activity-tracker/
- Documentation: https://yourwebsite.com/wp-security-activity-tracker-docs/
- Contact: support@yourwebsite.com
Privacy Policy
This plugin stores user activity data locally on your website. No data is transmitted to external servers. The plugin collects:
- User IDs and usernames
- IP addresses (can be anonymized)
- User agent strings
- Activity descriptions and timestamps
All data is stored securely and can be deleted at any time through the plugin interface.
Credits
Developed with security and user experience in mind. Thank you to the WordPress community for their continuous support and feedback.