Description
Running a WooCommerce store means more than taking orders. You also need to control where customers can buy from, protect digital products, reduce suspicious traffic, secure login access, and keep your site files from being exposed.
Security for WooCommerce helps merchants protect key areas of their store with location controls, IP blocking, VPN and proxy checks, malware scanning, secure downloads, two-factor authentication, passcode protection, and WordPress hardening tools.
- Restrict store, cart, checkout, product, and category access by country
- Block or allow visitors with IP blacklist and whitelist rules
- Detect visitors using VPNs and proxies
- Protect WooCommerce downloads and reduce direct file access
- Scan for malware and schedule recurring security checks
- Add two-factor authentication and passcode protection
- Harden common WordPress security areas, including directory listing and version exposure

Built for common ecommerce security problems
Security for WooCommerce gives merchants practical tools for real store risks, including unwanted overseas traffic, restricted product availability, exposed downloadable files, suspicious IP addresses, and weak login protection.
- Sell only in approved countries or regions
- Restrict products or categories with location-based access rules
- Protect digital products, PDFs, software files, and licensed downloads
- Reduce unwanted access from suspicious IP addresses, VPNs, and proxies
- Limit access to private, wholesale, B2B, or member-only stores
- Strengthen WordPress login security with two-factor authentication
- Monitor your site for suspicious files with malware scanning
Is this plugin right for you?
Security for WooCommerce is designed to help protect your website by controlling who can access it. Use it to restrict visitors by country or IP address, detect VPN and proxy users, secure downloadable products, scan for malware, and strengthen your WordPress installation.
If your primary concern is fraudulent orders, card testing attacks, stolen payment methods, velocity attacks, or suspicious checkout activity, Anti-Fraud for WooCommerce by OPMC is designed specifically for checkout and payment fraud prevention. Many merchants choose to use both plugins together to protect both their website and their checkout.
| Need | Security for WooCommerce | Anti-Fraud for WooCommerce |
|---|---|---|
| Primary purpose | Protect website access | Detect checkout fraud |
| VPN & proxy detection | Restrict website access | Fraud risk indicator |
| Country controls | Control access to your store or content | Identify high-risk order locations |
| IP address controls | Allow or block visitor access | Evaluate known or suspicious IP addresses |
| Restrict products or categories by location | Yes | — |
| Protect downloadable products | Yes | — |
| Malware scanning | Yes | — |
| Two-factor authentication (2FA) | Yes | — |
| WordPress hardening | Yes | — |
| Fraud scoring and risk analysis | — | Yes |
| Card testing protection | — | Yes |
| Velocity attack detection | — | Yes |
| Suspicious order alerts | — | Yes |
Control who can access your store
Prevent unwanted visitors from reaching areas of your WooCommerce store based on country, IP address, visitor behavior, or your own access rules.
Security for WooCommerce helps you reduce unwanted traffic, limit access from regions you do not serve, and protect important parts of the buying journey.
Restrict access by country
Block visitors from selected countries from accessing your site, cart, checkout, products, or categories.
This helps merchants who only sell in specific regions, need to follow regional licensing rules, or want to reduce unwanted traffic from locations they do not serve.

Restrict cart and checkout access
Prevent visitors from blocked countries from reaching the cart and checkout pages.
This helps reduce unwanted orders and checkout attempts from locations where you do not sell.

Restrict selected products
Control which products are available to visitors from restricted locations.
Use product-level restrictions when certain items can only be viewed or sold in approved regions.

Restrict product categories
Apply country-based restrictions to entire WooCommerce product categories with a single setting.
This helps stores with regional product ranges, regulated goods, licensed products, wholesale-only categories, or location-specific catalogs.

Block access during selected times
Restrict access during specific timeframes for visitors from blocked countries.
Use time-based restrictions when you need more control over when visitors can access your store or protected areas.
Block suspicious visitors with IP, VPN, and proxy protection
Fraudsters and unwanted visitors often hide behind VPNs, proxies, or changing IP addresses. Security for WooCommerce helps you identify and restrict this traffic before it reaches key areas of your store.
Detect VPN and proxy traffic
Security for WooCommerce uses visitor IP and location checks to help identify traffic coming through VPNs and proxies.
This gives merchants more visibility and control when visitors may be masking their true location.
Whitelist trusted IP addresses
Allow trusted users, team members, agencies, offices, or partners to access your store from approved IP addresses.
This helps protect sensitive areas while still allowing access for known users.
Blacklist unwanted IP addresses
Block known suspicious IP addresses from accessing your store.
Use IP blacklisting to respond quickly to repeated unwanted traffic, suspicious access attempts, or visitors who should not be allowed through.

Protect WooCommerce downloads and media files
Digital products need stronger protection than a standard public file URL. Security for WooCommerce helps reduce direct access to protected files and gives store owners more control over who can access downloadable content.
Secure downloadable files
Restrict access to downloadable files based on IP access rules.
This helps stores selling digital products, licensed documents, gated files, training materials, PDFs, software downloads, or private resources.

Prevent direct file access
Help stop visitors from accessing protected files directly through a public URL.
This adds another layer of protection for media files and digital assets that should only be available through approved access paths.
Prevent protected files from being indexed
Stop protected files from being exposed through search engine indexing.
This helps reduce the risk of private or paid content appearing in search results.
Harden your WordPress and WooCommerce site
Security for WooCommerce includes practical hardening tools that help reduce common exposure points across your WordPress site.
Scan for malware
Run malware scans to help identify suspicious files and known threats.
Use malware scanning to check your site files and act faster if something looks wrong.

Schedule malware scans
Enable scheduled scans so your store can be checked automatically.
This helps make security monitoring part of your regular store maintenance routine.
Protect sensitive files
Apply safer access rules for sensitive WordPress files, including files that should not be openly accessible.
This helps reduce exposure of important configuration and server files.
Prevent directory listing
Stop visitors from browsing directories that should not be publicly viewable.
Directory listing protection helps prevent people from seeing file and folder structures that could expose unnecessary site information.
Hide your WordPress version
Hide the WordPress version number from public output.
This helps reduce the amount of technical information available to attackers looking for sites running specific WordPress versions.
Strengthen login and admin access
Add extra protection around user access and site entry points.
Add two-factor authentication
Enable two-factor authentication for stronger login protection.
This helps reduce the risk of unauthorized access if a password is guessed, reused, or compromised.

Use passcode protection
Add passcode protection when you want an extra layer of access control.
This helps private stores, restricted areas, internal catalogs, B2B stores, or sites that should only be accessed by approved visitors.
Common use cases
Sell only in selected countries
Block visitors from countries you do not serve and restrict access to checkout, products, or categories.
Protect licensed digital products
Control access to downloadable files and reduce direct access to paid or private content.
Reduce suspicious traffic
Use country restrictions, VPN and proxy checks, and IP blocking to reduce unwanted access attempts.
Manage regional product availability
Restrict specific products or categories when items can only be sold in approved regions.
Protect wholesale or B2B stores
Use IP rules, passcode protection, and access restrictions to keep private catalogs away from public visitors.
Strengthen WordPress security basics
Use malware scanning, directory protection, file access controls, two-factor authentication, and WordPress hardening tools from one plugin.
Perfect for stores that need more control
Security for WooCommerce is a strong fit for:
- Stores selling only within specific countries or regions
- Digital product sellers
- Wholesale and B2B stores
- Membership or private catalog websites
- Stores with regional licensing requirements
- Stores selling regulated or location-restricted products
- Merchants who want WooCommerce geo-blocking and IP blocking
- Store owners who want malware scanning and WordPress hardening tools
- Agencies managing WooCommerce security for clients
Why choose Security for WooCommerce?
Security for WooCommerce gives merchants a practical way to protect key areas of their store without adding several separate plugins.
- Block unwanted countries, IP addresses, VPNs, and proxies
- Restrict access to products, categories, cart, and checkout
- Protect WooCommerce downloads and private files
- Scan for malware and schedule regular checks
- Add two-factor authentication and passcode protection
- Harden common WordPress security areas
- Keep security controls inside your WooCommerce workflow
Built by OPMC
OPMC has been building and supporting WooCommerce extensions since 2014. Our plugins are designed for real WooCommerce stores and maintained by a team experienced in ecommerce workflows, integrations, automation, and store protection.
Security for WooCommerce is actively maintained, supported, and built to help merchants protect their stores with practical controls that are easy to manage.
Get started with Security for WooCommerce
Protect your WooCommerce store with location controls, IP blocking, VPN and proxy checks, secure downloads, malware scanning, two-factor authentication, and WordPress hardening tools.
Add Security for WooCommerce to your store today.






Reviews
There are no reviews yet.