Hack Halt Pro

Security that does the work for you.

Everything in Free, plus the automation that matters: known attackers blocked on sight, unauthorised file changes detected, scans on a schedule, and attack chains handled automatically.

For websites where downtime costs money.

Free protects you. Pro removes the manual work — the scanning you forget to run, the file change you never noticed, and the attack that unfolds while nobody is watching the dashboard.

What Pro adds

Seven things Free does not do

Hack Halt Free is a real firewall with real intrusion prevention — not a trial. Pro is the same plugin with the automation switched on: the work you would otherwise do by hand, or more honestly, the work you would keep meaning to do and never quite get to.

Threat-intelligence feeds

Known malicious IPs, bots and attack infrastructure are blocked on sight, using intelligence synced from the Hack Halt network. Free defends against what a request does; Pro also knows who is sending it.

File integrity monitoring

Pro baselines your WordPress core, plugins and themes, then tells you the moment something drifts. An unauthorised file change is the earliest reliable signal that a site has been compromised, and it is the signal most site owners never see.

Scheduled vulnerability scanning

Free scans on demand. Pro scans on a schedule, so a vulnerability published in a plugin you happen to use does not sit undetected until you remember to look.

Autodefense

Individual events rarely look like an attack. Autodefense correlates them into a chain — the probe, the login attempts, the payload — and acts on the pattern while it is still unfolding rather than after it has completed.

Honeypot deception

Traps placed where only an attacker would look. Anything that touches them identifies and fingerprints itself, and that intelligence feeds straight back into your protection.

CSP automation

A Content Security Policy is one of the strongest defences against cross-site scripting and one of the most tedious things to write by hand. Pro scans your site, builds the policy and enforces it, without you touching code.

Persistent geo-IP cache

Free resolves visitor countries live. Pro also builds a private local cache from your own traffic, so returning visitors and verified crawlers resolve instantly and your live logs stay fast as volume grows.

The real difference

The security work you stop doing

Every security task that depends on somebody remembering is a task that eventually gets skipped. Nobody schedules a vulnerability scan for the week they are shipping a redesign. Nobody notices a modified file at 2am on a Sunday.

That is the actual gap Pro closes. The scanning runs whether or not you are thinking about security. The file baseline is compared continuously rather than when you get suspicious. Known-bad traffic is refused before it becomes an incident you have to investigate. And when a genuine attack chain develops, Autodefense responds at machine speed instead of waiting for someone to read a log.

You still get the visibility — the live traffic, the decisions, the geography, the risk scores. You simply stop being the component that has to notice.

File integrity

Know the moment a file changes.

Pro baselines your WordPress core, plugins and themes and tells you when something drifts — the earliest reliable signal that a site has been compromised.

Always current

Never be the last to know about a new CVE.

Scheduled vulnerability scanning runs on its own cadence, so a newly published vulnerability in a plugin you use does not wait for you to remember to scan.

Threat intelligence

Block known attackers before they try.

Threat-intelligence feeds identify malicious IPs, bots and known attack infrastructure, and a persistent geo-IP cache makes your live logs resolve instantly.

Automation

Handle the attack while it is happening.

Autodefense correlates activity into attack chains and acts before damage is done, and CSP automation builds and enforces a Content Security Policy without you touching code.

Need Hack Halt’s most advanced protection?

ProSecure adds WAF request inspection, webshell and database integrity scanning, incident orchestration and backups — a full detection and response platform.

Questions

Frequently asked questions

Is Pro a different plugin, or an upgrade to Free?

The same plugin. Hack Halt Free and Hack Halt Pro are one codebase — a licence unlocks the premium modules. There is nothing to uninstall, migrate or reconfigure when you upgrade; the features you already use keep working exactly as they did.

What happens to my settings when I upgrade?

Nothing changes. Your firewall rules, blocked IPs, MFA configuration and hardening choices carry straight over. The Pro modules simply become available alongside them.

Do I still get manual vulnerability scanning on Free?

Yes. Manual scanning is a free feature and stays free. Pro adds scheduled scanning so it runs automatically on a cadence you choose.

What is Autodefense actually doing?

It correlates separate events into a single attack chain and acts on the pattern rather than the individual request. A probe, a burst of login attempts and a payload delivery look unremarkable one at a time; together they are an attack, and Autodefense responds while it is still in progress.

Will file integrity monitoring flood me with alerts every time I update a plugin?

No. Legitimate updates are expected changes and are reconciled against the update that produced them. What surfaces is drift that no update explains, which is the thing actually worth your attention.

Does Pro slow the site down?

Visitor-facing overhead is a handful of extra queries and a few milliseconds per page on a host with an opcode cache enabled. Scanning and feed syncing run on a schedule in the background, not during a visitor's page load.

When should I move up to ProSecure instead?

Pro automates protection for a site that matters. ProSecure is for sites where a breach is a business event — it adds WAF request inspection, webshell and database integrity scanning, full incident orchestration, and backup and restore.

Where to go next

Pro automates protection. Below is where it sits relative to the other levels.

Your site matters enough to automate its defence.

Upgrade to Pro and stop doing security work by hand.

Scroll to top