IPAbuse Developers

WordPress Plugin

The IPAbuse WordPress plugin checks visitor IPs against the IPAbuse reputation API and blocks malicious requests before they execute any WordPress code.

Requirements

  • WordPress 6.0 or later
  • PHP 8.1 or later
  • IPAbuse API key

Install

Via WordPress Admin

  1. Go to Plugins → Add New.
  2. Search for IPAbuse Firewall.
  3. Click Install Now then Activate.

Via WP-CLI

cURL
wp plugin install ipabuse-firewall --activate

Configure

  1. Go to Settings → IPAbuse Firewall.
  2. Enter your API key.
  3. Set the risk threshold (default: 50 — block IPs scoring below this).
  4. Choose which categories to act on.
  5. Click Save Settings.

How it works

The plugin hooks into init (the earliest WordPress action) and checks $_SERVER['REMOTE_ADDR'] against IPAbuse. Results are cached in a WordPress transient for the duration of your configured TTL to minimise API calls.

Next steps