
Fill a 6-digit code to validate your login
OnGuard by OnGuardX is a French fraud detection and prevention system trained on 33 million connection attempts, all hosted on a European infrastructure. It will challenge suspicious logins by email, send password compromise and warn users with new connection emails.
Getting Started video that explain in details how OnGuard will enhance your login security
OnGuard Plugin needs you to create an account on OnGuard and copy your client credentials on the WordPress OnGuard plugin page. The account creation flow will be your guide for configure your client depending on your needs.
OnGuard added value:
Security: 1.61%* of connections are probably account hijackings and have been prevented.
Anticipation: 5.52%* of users have a password that has already been hacked on other sites and are protected.
Customizable: Customize your security settings to protect users without being intrusive.
Effective: 31%* of challenged users will not solve the challenge.
Survivability: In the event of a massive attack, attackers will fail to log in despite having the right password.
Simple: Quick integration with your architecture, fast efficiency: just add plugin and create a client and that’s all.
*Analysis based on 33M connection attempts by kaggle.com.
This plugin connects to our SaaS service API to obtain weather information.
We list here all the cases when data are sent to our service.
If you have installed this plugin but you didn’t setup your client credentials to the setting page, you can’t take the benefits of the plugin. In this case, during login, we will send the domain of your website to our service. It’s simply for tracking purposes, to let’s us identify misuse of our plugin and help them to use it correctly.
To be able to challenge or let pass a login that succeed, we need some data.
The main feature of this plugin is the ability to challenge suspicious users. To not challenge them again on a trusted device/ip we need to store that he succeeds the challenge.
As long we warn users during login that the password is not safe, we don’t want to go into an infinite loop: we warn him, he resets the passwords with another leaked password, we warn him again on next login…
So when a user resets his password, we will check on the fly his password hash, then display that his password is associated with many hacked accounts.
This service is provided by “ONGUARDX INC”: