Knowledgebase

WordPress Plugins: Everything That Matters, Briefly Print

  • wordpressplugins, wordpress, plugins, hacked, backup, ftp, security, malware, woocommerce, caching
  • 0

The whole category in one page.

THE CORE PRINCIPLE

Every plugin must earn its place.

Each adds code, queries, maintenance and attack surface.

WHAT MOST SITES ACTUALLY NEED

Caching, backups, security, SEO, a contact form.

Five. Most sites need few more.

BEFORE INSTALLING ANYTHING

Check the last update date. Over a year is a warning. Read the one-star reviews. Check the support forum is answered.

NEVER USE NULLED PLUGINS

Pirated versions frequently contain injected malware.

That is one of the most common ways small business sites here are compromised.

DELETE RATHER THAN DEACTIVATE

Deactivated plugin files can still be exploited.

FOR UPDATES

Back up, update, test the checkout and contact form.

Outdated plugins are the most common route of compromise, so not updating is the larger risk.

WHEN SOMETHING BREAKS

Rename the plugins directory by FTP to regain access.

Then reactivate one at a time.

THE AUDIT

Twice a year. Can you name what every plugin does and why?

If not, you have too many.


Was this answer helpful?
Back

Are you happy with your experience? Leave us a review on Trustpilot.


Trustpilot